View Single Post
  #2  
Old 05-19-2026, 15:51
1ST 1ST is offline
Family
 
Join Date: Apr 2010
Location: Jordan
Posts: 99
Rept. Given: 47
Rept. Rcvd 225 Times in 24 Posts
Thanks Given: 6
Thanks Rcvd at 4 Times in 4 Posts
1ST Reputation: 200-299 1ST Reputation: 200-299 1ST Reputation: 200-299
Quote:
Originally Posted by deepzero View Post
The E8 imports should be doable with a script (attaching a pe section and putting the jump-thunk there then point the E8s at that). There is also a tool for this, but I dont have it anymore, ImportFixer 1.2 I think it was called.

But the real problem is obviously the VM. There is no public way to defeat it.
This is UIF (Universal Import Fixer) v1.2 by Magic_h2001 — it fixes Themida's E8-style "Directly Imports" in memory. But it's 32-bit only — won't work on our x64 target.
Reply With Quote
The Following User Says Thank You to 1ST For This Useful Post:
niculaita (05-20-2026)