Where communities thrive


  • Join over 1.5M+ people
  • Join over 100K+ communities
  • Free without limits
  • Create your own community
People
Repo info
Activity
  • 11:59
    AppVeyorBot commented #2661
  • 11:39
    torusrxxx opened #2661
  • 05:26
    Shiva-ansh commented #2438
  • 02:18
    hemd edited #2652
  • May 09 19:34
    mrexodia commented #2660
  • May 09 18:57
    Serqati commented #2660
  • May 09 15:18
    mrexodia commented #2660
  • May 09 14:37
    Serqati commented #2660
  • May 09 10:01
    mrexodia closed #2660
  • May 09 10:01
    mrexodia commented #2660
  • May 09 07:20
    Serqati opened #2660
  • May 08 12:07

    mrexodia on development

    Show ordinal names in the undecโ€ฆ (compare)

  • May 08 02:21
    wonderzdh opened #61
  • May 07 15:01
    mrexodia closed #2659
  • May 07 15:01
    mrexodia commented #2659
  • May 07 14:50
    Serqati opened #2659
  • May 07 08:17
    mrexodia closed #2658
  • May 07 08:17
    mrexodia commented #2658
  • May 07 07:28
    Serqati opened #2658
  • May 06 20:26
    mrexodia commented #2657
x64dbgbot
@x64dbgbot
<hevoskuiskaaja> so my NTSTATUS is STATUS_CONFLICTING_ADDRESSES. maybe you can look at the programs that are being tested. this one works: https://dpaste.org/SiGY and this one does not (it has NtAllocateVirtualMemory): https://dpaste.org/1AkK
<Matti> it's because the first one is calling NtUnmapViewOfSection
x64dbgbot
@x64dbgbot
<Matti> this is process hollowing, and the first program is doing a better job of it
<Matti> although I detest whatever language it is that it's written in
<hevoskuiskaaja> actually it is not calling NtUnmapViewOfSection in this case at all
<hevoskuiskaaja> I did not write it. it is the only one working sample
x64dbgbot
@x64dbgbot
<Matti> OK, in that case I'm guessing it's because the first program is actually pointing the image base to a newly constructed PE header
<Matti> but it's honestly very hard for me to read what it's doing
<Matti> I'll DM you a program that does the same in C
<hevoskuiskaaja> oh nice
x64dbgbot
@x64dbgbot
<sradix> This guy's a scammer i think (re @rey: )
<sradix> Sent me DM's out of nothing, told him i got no money and then he blocked me
<rey> Good day (re @sradix: Sent me DM's out of nothing, told him i got no money and then he blocked me)
<rey> What do you mean buddy? (re @sradix: Sent me DM's out of nothing, told him i got no money and then he blocked me)
<sradix> Dont PM people (re @rey: What do you mean buddy?)
<sradix> Read the rules
x64dbgbot
@x64dbgbot
<zamboronaldo> Hey! Install this app it is amazing!
https://play.google.com/store/apps/details?id=shdgjsd.pffofpf.pmpmpm.skolopo
x64dbgbot
@x64dbgbot
<pmhdii> Mr duncan ๐ŸŒน
I want to translate x64dbg to persian ๐Ÿ‡ฎ๐Ÿ‡ท over 60% ~ 80% .
x64dbgbot
@x64dbgbot
<mrexodia> You're welcome to! (re @pmhdii: Mr duncan ๐ŸŒน
I want to translate x64dbg to persian ๐Ÿ‡ฎ๐Ÿ‡ท over 60% ~ 80% .)
<mrexodia> I added Persian right?
x64dbgbot
@x64dbgbot
<pmhdii> Yes๐Ÿ˜Š
x64dbgbot
@x64dbgbot
<Pan> windbg has gh/gn command which is short for go with handle / go with not handle. (Internally call ContinueDebugEvent(DBG_EXCEPTION_NOT_HANDLED) / ContinueDebugEvent(DBG_CONTINUE)). is there same function in x64dbg, I enconter an Exception anti-debug.
x64dbgbot
@x64dbgbot
<Matti> yes
<Matti> go to options -> preferences -> exceptions tab
<Matti> there you can add exceptions to auto handle, and if they will be handled by the debugger (gh) or the debuggee (gn)
x64dbgbot
@x64dbgbot
<Pan> my old x64dbg is version of 2020 May. I couldn't find exception config you described, I updated my x64dbg, things go okay. So this setting is new function in x64dbg...
x64dbgbot
@x64dbgbot
<Matti> yes, I wrote it ๐Ÿ™‚
<Matti> because I wanted the same feature from windbg, haha
x64dbgbot
@x64dbgbot
<mrexodia> @Matti is the man
<mrexodia> I really like this feature
x64dbgbot
@x64dbgbot
<upload_no> Hi
<upload_no> x 64dbg Can I have some questions?
<morsisko> yes
<upload_no> {utf16[;length]@address}
<upload_no> I want to get [esp+1C] contents as breakpoint log contents. How should I use it?
<upload_no> {utf16[;9999]@esp+1C} Cannot be used
x64dbgbot
@x64dbgbot
<morsisko> and does it log something for hex type and not utf16?
<upload_no>
<upload_no> L "string"
x64dbgbot
@x64dbgbot
<TheLastPredator> I have a problem
<TheLastPredator> when i click a line to edit it was not editing
<morsisko> which line
<TheLastPredator> in my codd
<TheLastPredator> *code
<TheLastPredator> i double tap on jump condition it shows where it will go but i want to edit it and i cannot edit it
<morsisko> click once on that line
<morsisko> and then press spacebar
x64dbgbot
@x64dbgbot
<TheLastPredator> thank you so much it works thank you
<morsisko> ๐Ÿ‘
x64dbgbot
@x64dbgbot
<Yakov> Or you can enable in Options->Disasm that double clicking the instruction assembles it