![]() |
Doh i want some guides ._. howcow u already unpacked urs cabalmain ?:> i need do the same for cabal eu but im newbie in coding awww
|
i don't relly think I unpacked ... I use one script to find the OEP and unpack and it says it thinks it found it then i right click and hit search for all ref text strings and then I get a code that actually makes sense.... but whenever i try to dump/fix it I never succeed
|
Themida is not as simple as other protectors as rebuilding the IAT is a pain in the ass and varies from version to version. Use the script i've posted to search the real OEP, rebuild the IAT in olly, fix it with UIF, dump it, and fix imports with Chimprec .Heard Imprec does not import d3dx9.dll correctly; I'd never bothered to check though just to save the hassle :p
[Only registered and activated users can see links. Click Here To Register...] |
the script to find the OEP is... Themida + WinLicense 1.1.x.x - 1.9.x.x OEP Finder.txt amiright?? I;ve been suing this ALL along just can't find the right combo of things to do after but yea ima try what you just posted... just wana confirm im using right oep finder
|
Quote:
|
thats the prob I'm having now I tried using Themida OEP Finder + IAT Repair v0.2.txt (after using Themida + WinLicense 1.1.x.x - 1.9.x.x OEP Finder.txt) it seemed to work I did this whole thing with UIF then dumping and etc and eventually I got a file that i thought was fixed and dump and wus really happy >.> but when I tried clicking it nothing happened at all ... so then I tried opening in olly... it just runs get terminated and stops at a RETN code it's definetly a change from the last cuple of things I've tried but I can't seem to fix the IAT in olly by myself (btw I'm like super no knowledge on this stuff this whole thing is a learning process for me)
|
Use the script zen83 posted to rebuild IAT
ps : hope u understand that i'm not giving links directly just to make sure that those who really deserve this succeed, just as i've went through all the hassle. |
LOL I forgot abt that one!!! i alredy dled it but simply forgot abt it >.>
edit: [Only registered and activated users can see links. Click Here To Register...] that's wut i got >.> then it just goes back to the RETN adn yea I perfectly understand as I am still going thru the hassle atm :P.... and LOL you still got a bit of a hassle left yourself unless u've alredy succeeded in the flags! if so then grats! |
| All times are GMT +2. The time now is 16:51. |
Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.