Exetools  

Go Back   Exetools > General > General Discussion

Notices

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #2  
Old 03-28-2005, 02:36
carver carver is offline
Friend
 
Join Date: Jan 2005
Location: Nauru
Posts: 14
Rept. Given: 1
Rept. Rcvd 2 Times in 2 Posts
Thanks Given: 3
Thanks Rcvd at 3 Times in 3 Posts
carver Reputation: 2
before i use this way:
first, my target not load crypted.dll in memory, i make small dll_loader
with import from crypted.dll, for load all crypted.dll in memory.
after i use map32 for find all crypted sections and set bpm
on last crypted bytes in last crypted sections.
then, waiting while envelope encrypted all bytes
and use !suspend and dump from pe_tools.
last, fix dump in pe_tools.

is my first envelope unpacking, so i don't now about all cases.

also my target first read dongle data, then decode it.
if you target also use this may, you can fix decoded dongle cell,
encode it, and put new data to emulator.
Reply With Quote
 


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
How to unpack dos lzexe packed exe? jonwil General Discussion 4 01-18-2024 02:13
How to find out how an exe was packed and how to unpack it? DavidXanatos General Discussion 5 07-14-2018 05:25


All times are GMT +8. The time now is 05:24.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )