Quote:
Originally posted by Matt.dk+Aug 14 2005, 06:29--></span><table border='0' align='center' width='95%' cellpadding='3' cellspacing='1'><tr><td>QUOTE (Matt.dk @ Aug 14 2005, 06:29)</td></tr><tr><td id='QUOTE'>
Quote:
Originally posted by -Ultima@Aug 14 2005, 06:11
Quote:
Originally posted by -Matt.dk@Aug 14 2005, 03:25
<!--QuoteBegin--jMerliN
|
|
Quote:
Quote:
@Aug 14 2005, 03:05
I've unpacked the UPX packing on the BJX 1.1 bot, and as of now this unpacked version wont execute but whenever I get around to making this one run i'll post up the final one. Anyone who cares to can go ahead and do so, it only takes a simple bit of knowledge to do so... there's just no real need till the app goes P2P.
Though.. you can open it in IDA or your fav disasm app and browse around and find things and such, as all of the strings and functions are intact.
|
Great work, you got that done in less then an hour and you had to figure out how to unpack an exe that was packed with a modified UPX. Now, once it goes pay to use, we should be able to easily crack the bot, and jMerlin has already said he will do so. :)
karma +
|
oO
lol how lame all he did was dumping the process he hasnt fixed the OEP or the tables so the prog doesnt work and thats the main part dumping is easy fixing is the art ;)
|
The oem/tables have not been fixed yet, any person who can read a dumped exe knows that. The fact that its now dumped is what counts right now. Besides, as I type this I am talkin' to him, he is fixing the oem/tables right now. And it will be cracked the day the bot turns to pay to use mode, which is rumored to be, August 10th.
I didn't think it was lame, I was talking to him in TS the whole time, I'd personally like to see you go dump an exe that is packed with a modified UPX, when you don't know immidiately how to do it. [/b][/quote]
lol that shows that you don`t know what you are talking about
its decrypted and unpacked in memory when its loaded it takes about 10 seconds to load and dump it and i already did it the day i got the bot like i said its no big deal to dump it to fix the oep and the tables is the art