Ja187
January 11th, 2005, 09:26
Target: Few apps (year 2004)
Problem: App have some antidebugging tricks. When I execute it , it shows me messagebox with "Debugger detected!" error. So I bmsg xxx wm_destroy on it and I land in a code that don't have name in softice. I realized that app have sth like additional proccess with protection routine. The code of additional process is unreachable at start (app unpacks it.. I suppose). I can't dump it.
Problem: App have some antidebugging tricks. When I execute it , it shows me messagebox with "Debugger detected!" error. So I bmsg xxx wm_destroy on it and I land in a code that don't have name in softice. I realized that app have sth like additional proccess with protection routine. The code of additional process is unreachable at start (app unpacks it.. I suppose). I can't dump it.