BanMe
January 2nd, 2011, 16:03
So I guess I'm a in-betweener, where as I love code and use RE to get whats needed done, so this lands me with quite a few ppl,but being a hobbyist with no real education in these area's, I still dont grasp it all yet..
So what I would like to discuss is the area that both share,
where coding is used to Produce a PE and RE is used to analyze that PE..
I remeber a paper about dawn to dusk, execution of a exe..
Is there a dawn to dusk analysis of the consumption of a PE before and after execution ?
I ask this cause there is a special case in ntdll for handling SecServ.dll loading and reading specific segments, but that was the rabbit, not the hole.
Ok, in the future I will post the reference to 'background' materials.
..
So what I would like to discuss is the area that both share,
where coding is used to Produce a PE and RE is used to analyze that PE..
I remeber a paper about dawn to dusk, execution of a exe..
Is there a dawn to dusk analysis of the consumption of a PE before and after execution ?
I ask this cause there is a special case in ntdll for handling SecServ.dll loading and reading specific segments, but that was the rabbit, not the hole.
Ok, in the future I will post the reference to 'background' materials.
