📚 OpenRCE is preserved as a read-only archive. Launched at RECon Montreal in 2005. Registration and posting are disabled.








Flag: Tornado! Hurricane!

 Forums >>  Brainstorms - General  >>  Portable Executable File Format

Topic created on: October 26, 2005 11:51 CDT by MohammadHosein .

From CodeBreakersJournal - Goppit, ARTEam

Abstract
This tutorial aims to collate information from a variety of sources and present it in a way which is accessible to beginners. Although detailed in parts, it is oriented towards reverse code engineering and superfluous information has been omitted

here , pay a visit : http://www.codebreakers-journal.com/viewarticle.php?id=74&layout=abstract
pdf - 8 mb

Regards

  gnukish     February 12, 2006 01:12.50 CST
a 100 page pdf ...it's almost as good as Luevelmeyer's write up :)

  drew     February 12, 2006 20:16.23 CST
For those googling, it's Luevelsmeyer and you can find it here:
http://webster.cs.ucr.edu/Page_TechDocs/pe.txt

  BillyBoBob   February 13, 2006 10:16.33 CST
The CodeBreakers one seems to be gone?

  aeppert     February 13, 2006 13:36.22 CST
Well, given this dates back to October of 2005 and someone replied to it fairly late, it's not overly surprising.  

It appears Codebreaker's has redone their web site format as they have gone more toward an academic reviewed journal approach (which I dare say is great.)  At the moment their archive does not include anything prior to November of 2005.

  gnukish     February 13, 2006 14:37.07 CST
Sorry for the reply stirring problems ?? !! Iam did not notice when it was posted while replying mr.aeppert ...sorry again

Drew: Thanx for the "s" :D

  MohammadHosein     February 15, 2006 05:51.10 CST
i made an archive from all CBJ's publications a while ago , including all pdf's and all related codes , now i dont know a re-release is a good idea or not , and this makes them happy or not , but i'm quite sure that this would make lots of rce people thankful .

  aeppert     February 15, 2006 09:03.12 CST
I would personally wait on a re-release as the CBJ folks will most likely go back and archive everything appropriately over time.  If they do not and the "licensing" of the documents is public domain, then I would say re-releasing them is a wise move.

  MohammadHosein     February 18, 2006 02:47.29 CST
their licensing is kinda open and its not a problem , so i'll upload CBJ's archive as soon as i get an upload account

  braddeshong     August 29, 2006 13:38.20 CDT
It looks like the ARTeam website (www.accessroot.com) is no longer up.  The domain expired.  Does anyone have that Goppit paper in PDF form that they could post?

EDIT: ARTeam site is back up.

Note: Registration is required to post to the forums.

There are 31,328 total registered users.


Recently Created Topics
[help] Unpacking VMP...
Mar/12
Reverse Engineering ...
Jul/06
let 'IDAPython' impo...
Sep/24
set 'IDAPython' as t...
Sep/24
GuessType return une...
Sep/20
About retrieving the...
Sep/07
How to find specific...
Aug/15
How to get data depe...
Jul/07
Identify RVA data in...
May/06
Question about memor...
Dec/12


Recent Forum Posts
Finding the procedur...
rolEYder
Question about debbu...
rolEYder
Identify RVA data in...
sohlow
let 'IDAPython' impo...
sohlow
How to find specific...
hackgreti
Problem with ollydbg
sh3dow
How can I write olly...
sh3dow
New LoadMAP plugin v...
mefisto...
Intel pin in loaded ...
djnemo
OOP_RE tool available?
Bl4ckm4n


Recent Blog Entries
halsten
Mar/14
Breaking IonCUBE VM

oleavr
Oct/24
Anatomy of a code tracer

hasherezade
Sep/24
IAT Patcher - new tool for ...

oleavr
Aug/27
CryptoShark: code tracer ba...

oleavr
Jun/25
Build a debugger in 5 minutes

More ...


Recent Blog Comments
nieo on:
Mar/22
IAT Patcher - new tool for ...

djnemo on:
Nov/17
Kernel debugger vs user mod...

acel on:
Nov/14
Kernel debugger vs user mod...

pedram on:
Dec/21
frida.github.io: scriptable...

capadleman on:
Jun/19
Using NtCreateThreadEx for ...

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit