Open axano opened 2 years ago
Hi @axano, thanks for that. This is an issue with how SigThief works. It seems to me that the signature cloning is not applying only the signature to the output binary, effectively breaking the payload. Let me take a look at this further.
When I try to run the packed exe I get this error: The specified executable is not a valid application for this OS platform.
This is the used command:
This is the output:
And this is the error when i try to run the packed exe:
The e_inj.exe executable is written in C with visual studio and compiled in x64.
I get the same error for"