Ebol4
|
Last Activity: 03/04/2019 11:20
Mentions
| 06/14/2016 |
| 03:20 - moondoggie-bithax mentioned Ebol4 in post Bithax BDO The name won't appear in the process list at all. The injector itself is named "app.exe", but the actual dll won't appear.
Thanks Ebol4 for the XC Log Decryptor information and psch0 for his work on it. I'm going to reverse it tonight and see what the logs say.
The good news is: it seems likely they're just ... |
Quotes
| 03/04/2019 |
| 11:32 - Deleted Posts |
| 06/15/2016 |
| 14:59 - mithrelle quoted Ebol4 in post Bithax BDO This conversation wasn't about you.
No, no, I realised that :) I was just saying that he must have been doing something different to me, you and the rest of us as he was the only... |
| 02:50 - mithrelle quoted Ebol4 in post Bithax BDO Think he used other things or everyone would have get a ban
There's no patch this week until Friday, so if there's a ban wave coming it probably won't be before that. Can confirm... |
| 06/14/2016 |
| 00:20 - moondoggie-bithax quoted Ebol4 in post Bithax BDO Seems like a File signature detection , maybe randomizing the name / exe signature ect would be a good compromize?
Keen eye, I agree. The build is packed, the injector obfuscate... |





