Topic created on: April 25, 2008 07:32 CDT by
hannes 
.
Do someone have an interisting target?
windows kernel (not kernel32.dll :-) is _real_ challenge, man! believe me! it's not encrypted, yeah, and looks very friendly to reversers. but, do you have any idea, any suggestion, any experience how to find something you even don't know what is it or how it looks like or where in might be? you have thousands disassembly lines, you don't know what you look for exactly, so to find it the very complicated tricks and intuition must be involved.
btw, it's very useful work. a lot of new function appears, malware and maybe packer/protectors will use them, and right now nobody know how they work, we have no prototypes, so, before disassemble the newest malware/protectors, you have to disassemble kernel first, or... wait until someone else has done this.
|