RedStorm
May 3rd, 2002, 00:56
Well Hi there guys this is bit long but heck..., as you can notice am new here and in this world of RE
, but I find it very amusing and interesting...
TBH i started all this just couple of weeks ago...and I got a prob...
I have one dll which has been packed with a packer (what elese
) I have managed to identify it to UPX...Of course using the plain - D desn't work (reports File has been hacked/protected/modified take care!)...So I found out about ProcDump and try that but when DLL is dumped exe that uses it reports error in certain module...(this was all at the start)...
Ok now I found out that PE needs to be rebuilt (in some cases) when it has been dumped to a HD from memory...BUT I am long way from there...
I am willing to learn but does anyone knows a tutorial which coveres UPX...There are loads on Petite and other packers but I didn't managed to find any tuts on UPX...
I have also used UPXFIX on the file but than I recieve from UPX checksum error?? I did used proggy called FS to set correct checksum so am bit??
I also used ProcDump Editor to change Sections from "bogus" one to UPX corresponding hoping that would fix the issue so I could use - D on the file but no luck still get the: File has been hacked/protected/modified take care!
Any help on this issue will be appreciated...THNX!

TBH i started all this just couple of weeks ago...and I got a prob...
I have one dll which has been packed with a packer (what elese

Ok now I found out that PE needs to be rebuilt (in some cases) when it has been dumped to a HD from memory...BUT I am long way from there...
I am willing to learn but does anyone knows a tutorial which coveres UPX...There are loads on Petite and other packers but I didn't managed to find any tuts on UPX...
I have also used UPXFIX on the file but than I recieve from UPX checksum error?? I did used proggy called FS to set correct checksum so am bit??
I also used ProcDump Editor to change Sections from "bogus" one to UPX corresponding hoping that would fix the issue so I could use - D on the file but no luck still get the: File has been hacked/protected/modified take care!
Any help on this issue will be appreciated...THNX!