Originally Posted by m^2
No. Actualy the first tool which came in my mind was aPackage. It has tiny ~6 KB stub but it has some issues. First of all aPackage itself and output SFXes are causing false antivirus alerts. More exactly speaking Win32.HLLW.MyBot. Seems that some not very good person used aPackage for wrapping the evil stuff. Second. aPackage has no option for just storing the files, aPLib compression used anyway and its results was about 30 KB larger than uncompressed size. I tried to unpack the stub but failed. Seems its packed with 32Lite 0.03. Then yes, WinRAR SFX. Small and with usefull functionality. As you see it works
Why RAR sfx? Because it was the first that could autostart the given program that came to your mind?
I think you guessed the name of the packer by viewing the stub in HEX, cause its same packer used for RAR SFX. Damn, how I forgot to clear the header
What did you use to compress PAQ? My PEID definitions fail here.
Its kkrunchy v0.23a4_asm07. Totally impractical for common tasks cause it uses PAQ based compression with small decompression code which is very good for DemoScene its aimed for. Well, PAQ packed by PAQ
By the way, here is the little present for you.
[kkrunchy 0.23 (a3\a3neu\a3neuneu\a4asm07) -> Ryg]
signature = BD ?? ?? ?? ?? C7 45 00 ?? ?? ?? ?? B8 ?? ?? ?? ?? 89 45 04 89 45 58 50 C7 45 10 ?? ?? ?? ?? FF 4D 0C FF 45 14 FF 45 5C C6 45 1C 08 B8 00 08 00 00 8D 7D 30 AB AB AB AB AB BB 00 00 D8 00 BF ?? ?? ?? ?? 31 C9 41 8D 74 09 01 B8 CA 8E 2A 2E 99 F7 F6 01 C3 89 D8 C1 E8 15 AB FE C1 75 E8 BE ?? ?? ?? ?? 31 DB B1 04 83 F3 01 8A 24 1F 80 FC 02 76 0F 0F B6 C4 8B 04 85 ?? ?? ?? ?? C1 E0 02 FE
ep_only = true