this is a temp bypass just open it, wait untill it inject , after that pause cf process ( figure it out yourself ) , use x64dbg to dump the files you need
tag a mod to approve it faster
Originally Posted by 96neko
this is a temp bypass just open it, wait untill it inject , after that pause cf process ( figure it out yourself ) , use x64dbg to dump the files you need
tag a mod to approve it faster
You need virus scans, but would you mind explaining what does this exactly do?
What services is it running!?
Originally Posted by Janitor
You need virus scans, but would you mind explaining what does this exactly do?
What services is it running!?
virusscan link 10/62 false positive
it simply bypass hide memory and it doesn't include any crc bypass for xigncode3 as it's simply to dump files only
Originally Posted by 96neko
virusscan link 10/62 false positive
it simply bypass hide memory and it doesn't include any crc bypass for xigncode3 as it's simply to dump files only
We are very sorry. It runs a service that we are un-sure about. Attachment was handled to other staff members and responded with same statement.
Declined.
Originally Posted by Janitor
We are very sorry. It runs a service that we are un-sure about. Attachment was handled to other staff members and responded with same statement.
Declined.
the exe isn't even packed and it only runs kernel api service which gives the false positive and 1 crc , if you are afraid and unsure just run it under vm and follow my instrcutions on how to unpack in my 1st reply to make sure it's working
Originally Posted by 96neko
the exe isn't even packed and it only runs kernel api service which gives the false positive and 1 crc , if you are afraid and unsure just run it under vm and follow my instrcutions on how to unpack in my 1st reply to make sure it's working