This smells like gcat implant but UPX for obfuscation ..
For the password, you can AES encrypt it and only decrypt during runtime in memory so whatever touches disk will awalys be encrypted. Add anti-debug techniques otherwise using ollydbg would take 10 seconds to run ur executable and get to the point where the password is decrypted
Slavi 94 Master Poster Featured Poster
rubberman commented: Probably until the heat-death of the universe! :-) +13
Slavi 94 Master Poster Featured Poster
Slavi 94 Master Poster Featured Poster
Slavi 94 Master Poster Featured Poster
rubberman commented: The Cplusplus.com web site is a great one! I use it all the time. +13
Slavi 94 Master Poster Featured Poster
JamesCherrill commented: That's right. +15
Slavi 94 Master Poster Featured Poster
Slavi 94 Master Poster Featured Poster
ddanbe commented: Indeed! +0
TrustyTony commented: Thanks for sharing! +12