Is there a tool?

Discussion in 'Windows XP / Older OS' started by NonverbalMel, Sep 5, 2023.

  1. NonverbalMel

    NonverbalMel MDL Member

    Oct 11, 2021
    103
    39
    10
  2. un user

    un user MDL Member

    Jun 16, 2013
    163
    124
    10
  3. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream
    Staff Member

    Dec 21, 2012
    7,059
    8,359
    240
    XPkeys for OEM 5.24H, very old tool by Bluelist. Please note it is detected as a hacktool by Antiviruses! For that reason, I wrapped the ZIP file into a 7z archive with password protection. Password is MDL2023 .
     

    Attached Files:

    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  4. NonverbalMel

    NonverbalMel MDL Member

    Oct 11, 2021
    103
    39
    10
    #4 NonverbalMel, Sep 6, 2023
    Last edited: Sep 6, 2023
    (OP)

    You are awesome! Thanks for finding this:). I’ll be building a collection of XP editions and tools on archive.org. I will download this in a few hours :)

    Update: That tool did the trick :) big thanks! Now I need to get this stuff put together :)

    I have a question: If I modify the programs (using a tool like Resource Hacker) (say changing the title bar, icon, version resource, or other readily editable resources) would that be enough of a change to get the AV software off my back or off the backs of anyone who comes across the files? The reason is no matter how I package it (setup exe, password-protected RAR, etc.) the files are going to need to be placed __somewhere__ for an end-user to run thus __somewhere__ for an AV program to find and cause issue with. Short of user education (which is the ultimate form of "trust me, bro" as I'm some stranger on the internet, me vouching for these files means nothing)... I hope like hell that makes sense what I'm asking.
     
  5. NonverbalMel

    NonverbalMel MDL Member

    Oct 11, 2021
    103
    39
    10
    #5 NonverbalMel, Sep 6, 2023
    Last edited: Sep 6, 2023
    (OP)

    Attached Files:

  6. Carlos Detweiller

    Carlos Detweiller Emperor of Ice-Cream
    Staff Member

    Dec 21, 2012
    7,059
    8,359
    240
    No need to find it, never lost it.

    In the older days of pure signature-/fingerprint-based detection, this would have helped. Now we have Heuristics/behavioral detection, too, for preventing such cases where virii "mutate" (slight modifications to evade detection).
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  7. NonverbalMel

    NonverbalMel MDL Member

    Oct 11, 2021
    103
    39
    10

    Well... looks like it's a note in the readme file (see my post with download link) and hope end-user follows it (again it's the very definition of "trust me, bro"). Thank goodness 99.999% of my use cases are internal so if I say "this one is good" then it's good, but getting it to that 00.001% of the general user base is the part that messes me up.
     
  8. NonverbalMel

    NonverbalMel MDL Member

    Oct 11, 2021
    103
    39
    10
    I saw that and it los pretty comprehensive. Now if only it existed for the server products (exchange server, dynaics, SharePoint, etc.)

    I'm still picking my jaw up off the floor given how comprehensive that is :)