Web : http://mxb.cjb.net
Contact Me : [email protected] or [email protected]


Main | Index

ASPEdit 2000 - Build 2.3

Type : ASP Editor
Protection : Packed
Tech : Memory Dump


Crack : Here import table is not fiddled by the packer.So our work
is simple like unpacking ASPack :)

1 Go to the end point of the unpacker routine.
2 Use a memory dumper like PE-Editor to dump the entire process
to a file.
3 Find out the Original Entry Point [ OEP ] of the program.
4 Changed the entry point of the dumped file with PE-Editor.

Entry Point = OEP - Image Base

Note : If the program does not break at start point in symbol loader -
Change the FLAG of TEXT Section to = E0000020

End point of the unpacker routine is shown below :

0x79329F POPAD
0x7932A0 JMP 0x605B7C >> OEP : DUMP FULL PROCESS HERE

Change the entry point of the dumped program file.

This program uses MELTICE to detect SICE,which can be easily cracked
by using BPX CREATEFILEA