Exetools  

Go Back   Exetools > General > General Discussion

Notices

Reply
 
Thread Tools Display Modes
  #1  
Old 12-09-2013, 00:34
Conquest Conquest is offline
Friend
 
Join Date: Jan 2013
Location: 0x484F4D45
Posts: 125
Rept. Given: 46
Rept. Rcvd 29 Times in 17 Posts
Thanks Given: 33
Thanks Rcvd at 60 Times in 29 Posts
Conquest Reputation: 29
Quote:
Originally Posted by giv View Post
Don't make any illusions. It will be years before you will know. Or you can learn mechanic from the tutorials whithout knowing in fact nothing. Is your choice.
Well after all these years i have come to realize the fact that once you know where to hit, reversing is so easy that people dont reveal things really via tuts(well not all but most) . A usual format of tut is -> you open olly, click this button (no explanation why), click that button, use this script , hit breakpoint 62 times(though usually there should be another easy way but they just love to freak you out) and done you are at break point.
I open another target, copy the instruction and "Exception code: C0000005 ACCESS_VIOLATION"
The only way i could learn something was manually researching things on my own and dissecting at least 4~5 samples of certain protector.
Reply With Quote
The Following User Gave Reputation+1 to Conquest For This Useful Post:
Tomy73 (12-09-2013)
  #2  
Old 12-10-2013, 09:32
0xd0000 0xd0000 is offline
Family
 
Join Date: Nov 2013
Posts: 53
Rept. Given: 3
Rept. Rcvd 37 Times in 14 Posts
Thanks Given: 12
Thanks Rcvd at 23 Times in 12 Posts
0xd0000 Reputation: 37
Quote:
Originally Posted by Conquest View Post
Well after all these years i have come to realize the fact that once you know where to hit, reversing is so easy that people dont reveal things really via tuts(well not all but most) . A usual format of tut is -> you open olly, click this button (no explanation why), click that button, use this script , hit breakpoint 62 times(though usually there should be another easy way but they just love to freak you out) and done you are at break point.
I open another target, copy the instruction and "Exception code: C0000005 ACCESS_VIOLATION"
The only way i could learn something was manually researching things on my own and dissecting at least 4~5 samples of certain protector.
I agree here - tuts are great for reference, but that's about where it stops. You need to spend hours upon hours of research, mainly trial and error from the ground up.

When friends ask where to start, I direct them to the basic's. For those that are visual, some would say a quick youtube of a winrar patch is all they need to get started. For others, a simple crackme from crackmes and a copy of Olly with a tut on searching through strings. - or something from here: http://thelegendofrandom.com/blog/sample-page

The amount of time that is required to ramp up on RE is fairly subjective, some argue a seasoned developer has the edge --I tend to agree here, though had some argue it's better to start fresh so there is no paradigm shift to overcome, I can somewhat understand this, but it's a hard case to make.

As far as a RE��s work—reminds me of a line from a book, except here the reference is to dev��s, but I think the underlying principle still applies.

"Their work is one percent inspiration, the rest sweat-drenched detective work; their products are never finished or perfect, just varying degrees of "less broken"��
Reply With Quote
The Following 2 Users Gave Reputation+1 to 0xd0000 For This Useful Post:
Conquest (12-10-2013), Tomy73 (12-10-2013)
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
microsoft-tools-EXCONFIDENTIAL tools leak Bidasci General Discussion 0 05-31-2022 11:53


All times are GMT +8. The time now is 02:22.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )