• Content count

  • Joined

  • Last visited

Community Reputation

0 Neutral

About drdoom121

  • Rank
    Will I break 10 posts?

Profile Information

  • Gender
  1. Thanks for the link, but still can not figure it out how to modify the P.E header of dll so I can execute it.
  2. Hi! I am reading Practical Malware Analysis and want to convert dll to exe the books says that "To modify the PE header, wipe the IMAGE_FILE_DLL (0x2000) flag from the Characteristics field in the IMAGE_FILE_HEADER. While this change won’t run any imported functions, it will run the DLLMain method, and it may cause the malware to crash or terminate unexpectedly. However, as long as your changes cause the malware to execute its malicious payload, and you can collect information for your analysis, the rest doesn’t matter." my question is HOW do I wipe IMAGE_FILE_DLL?? I tried it opening with P.E explorer could not figure it out. Can someone please point be in right direction!! Thanks