A forum for reverse engineering, OS internals and malware analysis 

Forum for announcements and questions about tools and software.
 #21498  by itbwcki
 Sat Nov 30, 2013 4:08 am
Anybody know what to make of this program? It seems very useful at figuring out potential firmware malware.
Specifically, when I run it, there is a "folder" entry for "Option ROM," which can show firmware the software program can access.
For example, the network card firmware.
In my case, there is an entry for "Unknown Option Rom." The headers are for my BIOS, but then the rest are zeros, in hex form.

I'm trying to figure out, if someone else runs it, if I am on to something, or there is an error in the program, or there is a normal
response from the BIOS.

You can download the program at heexe.phpnet.us
 #21988  by xanax
 Sat Jan 18, 2014 10:52 am
don't know for this one, just to mention it looks like R&W from rweverything.com
 #22057  by itbwcki
 Mon Jan 27, 2014 12:13 pm
That's true, it looks a lot like it. But, I don't think RW Everything has a feature to dump available firmware to disk.