activemark 5.xx level 2 ep finder.txt

来自「700个脱壳脚本, 可以放在在OD的ollyscript Plugin中.」· 文本 代码 · 共 38 行

TXT
38
字号
/*ActiveMark 5.xx 2nd layer EP finderMade by: GaBoR {RES}Thanks to:	-CondZero for the great tuts on Activemark!	-Lunar_Dust for the overlay method!Instructions:	-hide Olly with OllyAdvanced plugin;*/var xgpa "GetModuleHandleA","kernel32.dll"mov x,$RESULTadd x,9bpcnd x, "[ESP+08]==0"runrunrunrunrunrunrunrunbc xmov x,espadd x,4bp [x]runbc [x]stostostostostocmt eip,"2nd layer EP found by GaBoR {RES}"msg "Dump, fix IAT & add overlay!"ret

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?