SV trace assembly code

01/07/2007 15:01 Cucurucho#256
@Vivivivi, Lukazolo, Gera

I'll try something... be patient ;)
01/07/2007 15:06 Domates#257
ok do i have to press f8 to find jne, because when i hit it it goes to ret command. i have to change jne eip.
01/07/2007 15:11 Vivivivi#258
@Cucurucho

Ty. Im not lazy..i can do it every time i restart my computer...but to be perfect it HAS to be saved version :D

btw ty for make it

[Only registered and activated users can see links. Click Here To Register...]
01/07/2007 15:16 Chochlik#259
hah... i can't even open AgentKing.... o.0
01/07/2007 15:19 qfire#260
19. Right click left window and go to 10003110
20. Press F5
21. Press F8 as many times till u get to the first JNE instruction. (in this case is at
10002895, this line must be blue;selected)

After Step 20, nothing happen when Press F8.

Can any1 help plz.


Any1 can help me on this plz.
01/07/2007 15:23 Domates#261
YEEEEEEEAH IT works :D +k to both
01/07/2007 15:26 Icystealer#262
WOOT i got it working too but how do we save it coz i dont wanna loose it.
01/07/2007 15:43 tomaszk#263
made it, works well, ty. btw should i make it again if i shut it down? is there any way to save it as a modified file?
01/07/2007 15:46 Cucurucho#264
Quote:
Originally posted by Icystealer@Jan 7 2007, 15:26
WOOT i got it working too but how do we save it coz i dont wanna loose it.
11 JNE instructions
01/07/2007 15:47 Gera#265
@ cucurucho
thanks cucurucho =) i think that if i do it in autoit it should work right?
01/07/2007 15:54 gigiultraplus#266
i need help i`m stuck at step 8 after i press start VS don`t responde or close what seems to be the problem?
01/07/2007 16:09 Michael59#267
Cucurucho

I can get to step 10 and then add the EIP

but at step 12 this doesn't work, I cant add EIP to 004035DD.
EIP is inactive, there is another way were I can highlight address 004035CB
and right click it -> "Change Register at this location" is that corect? or am I doing some thing wrong ?

So now I did that, looks like its going further.

Step 17 erm F9 doesn't do a thing,

I pass on and every thing goes well to step 21
F8 no response doesn't do a thing either?

so now I go on to step 22, well cant input EIP change as well either?!?
This is not good I guess, so I try my way "right click -> change register at this location" to?...?

I decide no, and follow the lazy way cuz it doesn't wok the way its supposed to :(

Another tip
to find all JNE's

*go to "search -> find assembly code" then type jne and ok. will get you all the listed jne addresses now directly go from 10002895 to 10002E47 and do step 22 lmao. hope this helps.

mine just says SV updated please download new SV. what the hell is the MATTER!!!. is it my CE?
01/07/2007 16:09 Mephisto120#268
Nice it take me time to figure it out but it really help me tnks
01/07/2007 16:11 Icystealer#269
Quote:
Originally posted by Michael59@Jan 7 2007, 16:09
Cucurucho

I can get to step 10 and then add the EIP

but at step 12 this doesnt work, I cant add EIP to 004035DD.
EIP is inactive, there is anotherway were I can hilight adress 004035CB
and right click it -> "Change Register at this location" is that corect? or am I doing some thing wrong ?

im just curious at step 7 did u set a breakpoint?
01/07/2007 16:15 orochris#270
Quote:
Originally posted by Cucurucho+Jan 7 2007, 13:39--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td>QUOTE (Cucurucho @ Jan 7 2007, 13:39)</td></tr><tr><td id='QUOTE'> <!--QuoteBegin--orochris@Jan 7 2007, 12:06

Gd guide bro.however at step 11 when l press F9 its doesnt bring me to 004035CB.could u help me on this bro?
If not what it does? [/b][/quote]
bro when l press F9 it does nth and still remains at 00403596.

i did everything according to yr steps.no f5 at step 7 correct?wehn l press f5 it say attach process to aplication ,just press yes correct?