medic
September 3rd, 2009, 06:58
Hi All,
Back on this forum after 10 years away!
My target is protected with PEncrypt4 and running through the install usng Ollydbg the main exe creates 4 tmp files in ...local\temp which it then attachs to to do the serial verification. I've sniffed through each of the temp files but there are no obvious strings or calls that I can use and I'm not sure how I could reverse as the tmp files are created dynamically and are threaded.
Does this sound like a particular scheme? Any pointers on a method here greatly appreciated.
Thanks.
Back on this forum after 10 years away!
My target is protected with PEncrypt4 and running through the install usng Ollydbg the main exe creates 4 tmp files in ...local\temp which it then attachs to to do the serial verification. I've sniffed through each of the temp files but there are no obvious strings or calls that I can use and I'm not sure how I could reverse as the tmp files are created dynamically and are threaded.
Does this sound like a particular scheme? Any pointers on a method here greatly appreciated.
Thanks.
