|
I'm too busy to writte a tut. when I have time maybe.
The registration scheme and the original EXE are packed in differents ways so you must crack the reg scheme (using SICE or stolen code) and then, when you bypass the reg., you will see how the loader unpacks the original file and go to the OEP.
I don't know what type of protection is (it creates threads)...
If my job permits me, I will post more info.
Regards.
|