[Protection Enhancement] SecuROM Detection (5.03.06.????) #194

Open
opened 2026-01-29 21:07:02 +00:00 by claunia · 3 comments
Owner

Originally created by @PurpleNekoNova on GitHub (Feb 13, 2025).

ProtectionID detects SecuROM 5.03.06 on the .EXE of http://redump.org/disc/121777/ (Children of the Nile)

BOS does not find anything on the disc or post-install directory.

BOS Version: ProtectionScan_3.3.4_net9.0_win-x64_release

Originally created by @PurpleNekoNova on GitHub (Feb 13, 2025). ProtectionID detects SecuROM 5.03.06 on the .EXE of http://redump.org/disc/121777/ (Children of the Nile) BOS does not find anything on the disc or post-install directory. BOS Version: ProtectionScan_3.3.4_net9.0_win-x64_release
Author
Owner

@HeroponRikiBestest commented on GitHub (Feb 14, 2025):

The executable is packed or malformed in a very strange way; InfoPrint fails to even parse it.

$ ~/InfoPrint_1.8.6_net9.0_linux-x64_release/InfoPrint cotn.exe 
Checking possible path: cotn.exe
Attempting to print info for cotn.exe
File format found: Executable
Either Executable is not supported or something went wrong during parsing!

Image

cotn.exe.zip

@HeroponRikiBestest commented on GitHub (Feb 14, 2025): The executable is packed or malformed in a very strange way; InfoPrint fails to even parse it. ``` $ ~/InfoPrint_1.8.6_net9.0_linux-x64_release/InfoPrint cotn.exe Checking possible path: cotn.exe Attempting to print info for cotn.exe File format found: Executable Either Executable is not supported or something went wrong during parsing! ``` ![Image](https://github.com/user-attachments/assets/ff0964a2-c067-4898-9668-394be22fc684) [cotn.exe.zip](https://github.com/user-attachments/files/18803370/cotn.exe.zip)
Author
Owner

@DevX-Cipher commented on GitHub (Feb 20, 2025):

i cant even get this to work all I get is

Checking possible path: C:\Users\WDAGUtilityAccount\Desktop\New folder\SETUP.EXE
Attempting to extract all files from C:\Users\WDAGUtilityAccount\Desktop\New folder\SETUP.EXE
Extracting executable contents

@DevX-Cipher commented on GitHub (Feb 20, 2025): i cant even get this to work all I get is Checking possible path: C:\Users\WDAGUtilityAccount\Desktop\New folder\SETUP.EXE Attempting to extract all files from C:\Users\WDAGUtilityAccount\Desktop\New folder\SETUP.EXE Extracting executable contents
Author
Owner

@mnadareski commented on GitHub (Feb 20, 2025):

What does your comment have to do with the SecuROM detection being looked at here? Unless you provide a reason, I will be deleting your comment.

@mnadareski commented on GitHub (Feb 20, 2025): What does your comment have to do with the SecuROM detection being looked at here? Unless you provide a reason, I will be deleting your comment.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: SabreTools/BinaryObjectScanner#194