Quote:
Originally posted by R@dier
you may want to check you have dumped in the correct place,
or that your IAT is correct.
another quick thing is have you reset the oep point to
00437578
the stolen bytes are
00437578 > $ 55 PUSH EBP ; real OEP
00437579 . 8BEC MOV EBP,ESP
0043757B . 83C4 F4 ADD ESP,-0C
0043757E . 53 PUSH EBX
0043757F . B8 78744300 MOV EAX,dumped_.00437478
if your IAT is correct and you have dumped in the right place
all should be working
Best Wishes
R@dier
|
R@dier i think u r right ...i'l do the imprec part again and check...i'l be back