View Single Post
  #2  
Old 12-10-2004, 22:19
Line79
 
Posts: n/a
SDProtector isn't hard.

It has a funny way to jmp to entry point, which i call a kind of domino..

The anti debugging isn't really hard to bypass. The threads used to detect
Debuggers, dumpers , and IAT recoverer are easy to disable because of a bad vulnerability in the implementation.

The IAT redirection is simple as shit. you just need to write a simple Imprec plugin and its gone.. Beside, i have noticed that it will sometimes change his
redirection, i don't even bother to re write the plugin.. i just close the app, and try again

The only fun part is the jmp to oep, which i have already seen in some custom protection.

to me : Armadillo
SDProtector
SVKP

Bye.
Reply With Quote