Jump to content
Tuts 4 You

Forums

  1. Community Discussions

    1. Terms, Privacy Policy & Frequently Asked Questions   (113,639 visits to this link)

      Very important! Please read before sign up and posting...

    2. General Discussions and Off Topic

      General and off-topic conversations and discussions here...

      10,077
      posts
    3. Artscene Community

      Share graphic, ASCII, module, demo, intro ideas and works...

      7,377
      posts
    4. Site Bug Reports and Feedback

      Bugs, feedback and ideas regarding this site...

      2,041
      posts
  2. Reverse Code Engineering

    1. Challenge of Reverse Engineering

      Try a challenge or contribute your own, any platform or operating system...

      12,691
      posts
    2. Hardware Reverse Engineering

      Reverse engineering of circuitry hardware and firmware...

      146
      posts
    3. Network Security

      Discussions on network security, holes, exploits and other issues...

      428
      posts
    4. Malware Reverse Engineering

      Debugging, disassembling and documenting interesting malware...

      1,391
      posts
    5. Reverse Engineering Articles

      Share an interesting blog, news page or other RE related site...

      1,305
      posts
    6. Employment and Job Vacancies

      Advertise a job or seek an employment opportunity...

      144
      posts
  3. Developers Forums

    1. Programming and Coding

      Programming and coding tips, help and solutions...

      11,305
      posts
    2. Programming Resources

      Share an interesting blog, news page or other resource...

      272
      posts
    3. Software Security

      Securing your software against reverse engineering...

      632
      posts
  4. Community Projects

    1. Scylla Imports Reconstruction

      Development and support forum for the Scylla project...

      473
      posts
    2. x64dbg

      An open-source x64/x32 debugger for windows...

      1,057
      posts
    3. Future Community Projects

      Looking for support and interested partners for a future project?

      125
      posts
    4. Community Projects Archive

      Old and inactive projects moved to long term support...

      794
      posts
  • Posts

    • TomaHawk
      Many years ago I wrote a software protector called MyAppSecured. Somewhere in the middle of porting it from Delphi to C++ I lost my interest in this project. Just found it on my HDD so I thought it might be helpful for someone. In short, the GUI of this protector is written in C++ and the protection stub in written in MASM. The C++ code loads a target in memory and adds 2 PE sections to it. One for the TLS callback code and one for the main code. The MASM stub will be written to those 2 sections. This protector has just 2 protection features: Analyze Immunity (anti-debug) and Memory Shield (anti debug-tools, OEP relocation). Note this is not a download-and-use-right-away protector. The code is written years ago so it's not very well written and also for some unknown reason the MASM stub could not be written into the 2 created sections. It did work very well years ago but I don't have the time to investigate why it doesn't work now. To be clear, the compiled exe file you will find in the package should run nicely but once you try to secure a exe file, that exe file is gonna be corrupted. This project is free for personal and commercial purposes. If you have any questions please ask, but keep in mind I abandoned this project and removed it from my HDD right after posting it here. Even if you are not gonna use this project it might be interesting to check the code. Some interesting stuff you might find there for your own project, such as emulating the CreateThreadW function in pure MASM, adding PE sections & relocation of OEP. MyAppSecured v1.00 Beta source.zip
    • JMC31337
      Grabbed it while cruising around on the iPhone   AdobeFlashPlayer_Bundlore.zip
    • Hookahice
      Yes, can we please have some info about how it was unpacked / cleaned? What tools & techniques were used? etc... Thanks! -HooK
    • Black Hat Anonymous
      Exactly what i do now a days.  Open your target app. find the xaml code in resource and save it...    then create a wpf application into the visual studio and create a new test or dummy project.  insert the saved xaml code into your project that you created.  modify all the changes into the xaml that you edit into the wpf app. then compile the project.  now open your project in the dnspy and go to resource and you will see xaml resources as baml. dont save it directly.    save it with raw save baml resources.    now again go to your target app and then delete your resoueces which you wanna change and create a new system.io resource and select tghe raw baml file which you saved using dnspy from the test or demo wpf project.   now give the same name into the target and boom ///   it will work good. i tested it. 
  • Popular Contributors

    1. 1
      CodeExplorer
      CodeExplorer
      9
    2. 2
      Black Hat Anonymous
      Black Hat Anonymous
      5
    3. 3
      whoknows
      whoknows
      3
    4. 4
      Cursedzx
      Cursedzx
      2
    5. 5
      kao
      kao
      2
  • Member Statistics

    • Total Members
      12,452
    • Most Online
      2,132

    barrydekong
    Newest Member
    barrydekong
    Joined
×
×
  • Create New...