Welcome,
Guest
. Please
login
or
register
.
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
Home
Help
Search
Login
Register
Malware Domain List
»
Malware Related
»
Malware Analysis
»
Reverse Engineering
« previous
next »
Print
Pages: [
1
]
Go Down
Author
Topic: Reverse Engineering (Read 8334 times)
0 Members and 2 Guests are viewing this topic.
October 24, 2008, 06:27:24 am
Read 8334 times
saranam7
Newbie
Offline
3
Reverse Engineering
Hi ,
when v debug a file in ollydbg, if v get a access violation error that says " Access Violation when writing to [7C835678], " what can v try next, when SEH is not set in this case.
Logged
October 24, 2008, 11:36:22 am
Reply #1
sowhat-x
Guest
Re: Reverse Engineering
Very generic question / depends on what the target is and does...generally though,first thing you should try out is:
Options > Debugging Options > Exceptions > Ignore (pass to program)...and tick most stuff there...
Logged
October 25, 2008, 04:28:08 am
Reply #2
saranam7
Newbie
Offline
3
Re: Reverse Engineering
Thanks for ur reply... I am in beginners level... i hope the question i have asked comes under antidebugging ... so can u advice on some antidebigging techniques or sites that would help me a lot...
Logged
October 25, 2008, 09:34:12 am
Reply #3
sowhat-x
Guest
Re: Reverse Engineering
...i'm not a guru either,way far from that point,he-he...regarding anti-debugging techniques,
ap0x
has done really nice work documenting more than a few of the...tricks of the trade:
http://ap0x.jezgra.net/protection.html
To bypass anti-Olly tricks,there exist quite a few helper apps out there,
eg.OllyAdvanced mod,HideTools,HideDebugger or the Phantom plugin...
You can find all of them over at
tuts4you
board,under the modifications and plugins sections:
http://www.tuts4you.com/download.php?list.3
For IDA,I think that the best solution is by far:
http://newgre.net/idastealth
Logged
October 29, 2008, 09:04:48 am
Reply #4
saranam7
Newbie
Offline
3
Re: Reverse Engineering
tnx a lot... i went thru the urls and found it very helpful... Now can you advice me on how to improve my debugging speed... like identifying codes that are used for VMWare check or something like RDTSC,SIDT,etc.,
Logged
Print
Pages: [
1
]
Go Up
« previous
next »
Malware Domain List
»
Malware Related
»
Malware Analysis
»
Reverse Engineering