Flag: Tornado! Hurricane!


Article Abstract This paper is a direct descendent of my previous one regarding the metamorphic engine of the W32.Evol virus. I advise you to take a look at it before reading this one, or at least be acquainted with the subject of metamorphism. The focus of this paper is the special engine of the Lexotan32 virus.

The virus was released in 29A#6 Virus Magazine in 2002, the Annus Mirabilis of metamorphic viruses. The virus was created by the prolific VX coder, Vecna, and was one of the last complex creations of this kind. I could further elaborate on the genealogy of this virus, but I think it is sufficient to say that this virus is a culmination of many of the techniques developed throughout the author's career.

Full Article ...    Printer Friendly ...

Article Comments
mballano Posted: Friday, August 17 2007 01:54.18 CDT
Nice article ;-)

MohammadHosein Posted: Friday, August 17 2007 10:47.15 CDT
alot of details ...great work .

baibhav Posted: Friday, August 17 2007 10:48.22 CDT
Gud work ! Thanks for sharing !

vecna Posted: Thursday, August 23 2007 20:03.45 CDT
Congratulations for the article - its exact

adityaks Posted: Sunday, September 23 2007 23:40.22 CDT
nicely driven , very well

c0ck3dpist0l Posted: Tuesday, April 29 2008 07:54.10 CDT
it's cool! Thanks for sharing!

m4dnut Posted: Wednesday, July 9 2008 20:32.17 CDT
it's so cool~! thnaks for your effots.
i always cave a article like this. :)

lazyworm Posted: Wednesday, June 30 2010 20:25.49 CDT
very nice!I need it.

tgnice Posted: Saturday, June 18 2011 03:18.50 CDT
cool :)

redbone Posted: Tuesday, July 12 2011 02:56.10 CDT
good information ....


Add New Comment
Comment:










There are 28,212 total registered users.


Recently Created Topics
Reverse Engineering ...
Jan/23
Career: DoD Agency I...
Jan/22
"Disappearing&q...
Jan/17
Career: Software Sec...
Jan/11
Where is the call st...
Jan/07
IDA Pro 6.1 Breakpoi...
Jan/01
How to create data s...
Dec/30
can i search all mod...
Dec/23
IDA symbol table exp...
Dec/20
An anti-attach trick
Dec/17


Recent Forum Posts
Reverse Engineering ...
NirIzr
"Disappearing&q...
NirIzr
Reverse Engineering ...
charlie
"Disappearing&q...
charlie
An anti-attach trick
Bass
An anti-attach trick
waleeda...
An anti-attach trick
Bass
An anti-attach trick
waleeda...
An anti-attach trick
Bass
Looking for value in...
NirIzr


Recent Blog Entries
Ludwig
Feb/04
chi on sale

Ludwig
Feb/04
Monster In The Vicinity Of ...

Ludwig
Feb/04
Supra footwear Online

waleedassar
Jan/31
Yet Another Anti-Debug Trick

RolfRolles
Jan/22
Finding Bugs in VMs with a ...

More ...


Recent Blog Comments
waleedassar on:
Feb/01
Yet Another Anti-Debug Trick

NirIzr on:
Jan/31
Yet Another Anti-Debug Trick

jackchen on:
Jan/10
nike mercurial vapor iii

waleedassar on:
Dec/27
A new Anti-Olly trick.

PeterFerrie on:
Dec/27
A new Anti-Olly trick.

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit