Thread: StringDecryptor
View Single Post
  #2  
Old 08-21-2024, 18:33
chants chants is offline
VIP
 
Join Date: Jul 2016
Posts: 876
Rept. Given: 48
Rept. Rcvd 53 Times in 32 Posts
Thanks Given: 757
Thanks Rcvd at 1,174 Times in 545 Posts
chants Reputation: 53
Is there a way to hook the decrypt call and do this at runtime if the control flow obfuscation can't be unraveled? I suppose when you say encrypted, you mean by something that .NET has code to decrypt. So theoretically a hook would say the original string address, the caller address, and after forwarding the payload would have the decypted info too, which could be interesting.
Reply With Quote