Quote:
Originally Posted by Irbos
And you can not tell how to dump?
|
When you dump something you want to make sure to dump it when the RIP is at the OEP. Attach your debugger of choice, search for "commnad line param" ASCII, trace 2 functions out at you are at the "real" main function.
Set a hardware breakpoint there, restart the game and dump it when it hits the breakpoint (Scylla can do this for example).