Where communities thrive


  • Join over 1.5M+ people
  • Join over 100K+ communities
  • Free without limits
  • Create your own community
People
Repo info
Activity
  • 01:58
    a627414850 commented #2945
  • 01:18
    ErnestoAMujica opened #2946
  • Oct 04 18:46
    ZehMatt commented #2943
  • Oct 04 16:24
    AbedKarmi commented #2943
  • Oct 04 16:24
    AbedKarmi commented #2943
  • Oct 04 16:24
    AbedKarmi commented #2943
  • Oct 04 16:23
    AbedKarmi commented #2943
  • Oct 04 16:23
    AbedKarmi commented #2943
  • Oct 04 14:40
    ZehMatt commented #2943
  • Oct 04 03:39
    AbedKarmi commented #2943
  • Oct 04 03:38
    AbedKarmi commented #2943
  • Oct 04 03:37
    AbedKarmi commented #2943
  • Oct 03 23:42
    SwapnilKumbhar commented #2838
  • Oct 03 21:32

    mrexodia on development

    Use a tree view for color confi… Merge pull request #2942 from t… (compare)

  • Oct 03 21:32
    mrexodia closed #2942
  • Oct 03 21:32
    mrexodia commented #2942
  • Oct 03 21:30
    mrexodia synchronize #2942
  • Oct 03 20:52
    mrexodia commented #2838
  • Oct 03 19:43
    mrexodia commented #2945
  • Oct 03 19:43
    mrexodia commented #2945
x64dbgbot
@x64dbgbot
<Dmitriy_Karbovskiy> It seems doable for a known small region, but not the whole memory.
<Dmitriy_Karbovskiy> Actually.
<Dmitriy_Karbovskiy> It might be possible with a bit of context.
<Dmitriy_Karbovskiy> Since you are expecting a string, you may want to hook string functions of whatever library/language your program is built upon.
<Dmitriy_Karbovskiy> If you expect a password, it will probably be loaded from file or typed via keyboard. Might as well check that.
<Dmitriy_Karbovskiy> x64dbg shows the list of used libraries and imported functions.
<Dmitriy_Karbovskiy> You may want to start from that. The rest depends on your case.
x64dbgbot
@x64dbgbot
<albertsjohnson> When app runs, current values are shown on the comment region
<albertsjohnson> is it possible to write a plugin to search for these values in a real time?
<albertsjohnson> or just compare each of these values to the target string
<albertsjohnson> and if they are matched, then stop
<albertsjohnson> it will be very helpful if some plugins can do that
x64dbgbot
@x64dbgbot
<Dmitriy_Karbovskiy> You'll need to repeatedly scan the memory.
That's no good and extremely, I mean extremely slow.
<Dmitriy_Karbovskiy> I am no expert in x64dbg though.
Neither I know how to write plugins for that.
<Dmitriy_Karbovskiy> I would recommend to only scan pages with R/RW rights or something.
Scan the stack, scan the heap, skip import, exports and read-only constants (skip .idata, .edata, .reloc, .rdata, .bss and other useless sections)
x64dbgbot
@x64dbgbot
<Dmitriy_Karbovskiy> You probably only want to scan dynamic memory. If it's Windows we're talking about, you can enumerate heaps and thread, therefore you might be able to find their stacks.
<albertsjohnson> I found some plugins
<albertsjohnson> maybe they are helpful
<albertsjohnson> thank you
x64dbgbot
@x64dbgbot
<Dmitriy_Karbovskiy> Good luck.
x64dbgbot
@x64dbgbot
<Rhyle12> Hi
Please tell me how to crack the ex4 file through x32dbg
Thanks in advance
x64dbgbot
@x64dbgbot
<gmh5225> Yes. I am
Do you think it makes sense to add this feature within the X64DBG
Or still only available as a plugin
x64dbgbot
@x64dbgbot
<mrexodia> I would say to start with only a plugin. The feature seems kinda niche and adding it to x64dbg itself would be a maintenance burden I think
x64dbgbot
@x64dbgbot
<gmh5225> OK. I see
x64dbgbot
@x64dbgbot
<Atn> @SunBeam are u around ?
<Atn>
<Atn> this script will search for sequence off commands.
<Atn> this apply on next version of this plugin ,
<Atn> I will upload it tommorrow
<SunBeam> alrighty 🙂
<SunBeam> I am around if you want me to test
<SunBeam> ^
x64dbgbot
@x64dbgbot
<SunBeam> you have to understand I am using Discord and can't see any script you may have pasted
<SunBeam> you wrote twice "this script will do this" and I can't see any script
<Atn> that what I thought too
<SunBeam> yeah, sorry
<Atn> I post a picture
<SunBeam> sure thing; or a link to pastebin should do
<SunBeam> thank you
x64dbgbot
@x64dbgbot
<SunBeam> and this script has to be run in...?
<Atn> where I can upload gif file as a guest
<SunBeam> I doubt it's in x64dbg > Script
<Atn> no
<SunBeam> imgur
<Atn> no u have to use this plugin
<Atn> but u have to wait till tomorrow I am still update the some extra functions