Printable View
Thanks for contributing. I needed this myself.
Approved.
Jotti Scan
Aww you removed my Turkey D:
@Flengo
congrats on Minion. I'm about to be wiki editor and donater lol. And thanks for this do you have a 32 bit or 64 bit pc?
@JohnFame
It's obviously 32-Bit for Kernal Detector , or he's using master131's Module Dumper which can allow you to dump cshell.dll on 64-Bit than using LordPE to rebuild it and therefore removing the .dmp extension and opening it in either IDA or Olly and looking for bytes & addresses.
Okay, but I dont think Module Dumper works, because I tried it many times and it failed to give me the fully dumped cshell and just gave me the original file from the ca folder for some reason.
I love you for this... Thanks soo much i needed it!
Someone could easily create a way to load the library on your own and go along from there. With minimal effort. For those who complain about being on 64-Bit OS's.
@Ch40zz-C0d3r is the one that keeps telling everyone to do so tehe
Pmed you ACEA