首页
社区
课程
招聘
[转帖]AMDUMPV62 - VERSION 1.2 (ActiveMark v6.2x), latest release
发表于: 2007-10-31 23:14 3547

[转帖]AMDUMPV62 - VERSION 1.2 (ActiveMark v6.2x), latest release

2007-10-31 23:14
3547
From:ARTeam

by:condzero

info
----
1. Dump and fix ActiveMark v6.2x targets at 2nd layer EP
2. Search for (4) PEB DWORD address pointer references and
create necessary instructions at EP to update for current
execution of dumped file
3. Search for CPUID DWORD address pointer reference and
create necessary instructions at EP to update for current
execution on any machineid of dumped file
4. Better section alignment of dumped file
5. PUSH 2nd layer EP and RETN
6. Append overlay data to end of dumped file
7. Search for and patch VM DWORD address pointer reference
8. Provide the foundation for inline patching dumped file

Please read the readme.txt and document for more information.

Note: This is a dumping tool, not an unpacker or DRM removal tool.
If you have d/l'ed a previous version of this tool, you are
advised to get the latest v1.2 which includes all of the above
modifications.

Source code included.

Get it on the [ARTEAM] RCE related tools page.

cheers!

[招生]科锐逆向工程师培训(2024年11月15日实地,远程教学同时开班, 第51期)

收藏
免费 1
支持
分享
最新回复 (3)
雪    币: 98729
活跃值: (201034)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
2
http://arteam.accessroot.com/releases/file_info/download1.php?file=AMDUMPV62_by_condzero.rar
2007-10-31 23:20
0
雪    币: 98729
活跃值: (201034)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
3
Here it:
上传的附件:
2007-10-31 23:53
0
雪    币: 417
活跃值: (475)
能力值: ( LV9,RANK:1250 )
在线值:
发帖
回帖
粉丝
4
很强大.
很和谐.
2007-11-1 07:15
0
游客
登录 | 注册 方可回帖
返回
//