[Help] OllyDbg Method Still Used?

Discussion in 'Subnautica Accounts - Buy Sell Trade' started by OVOMobZai, 10/24/16.

Thread Status:
Not open for further replies.
  1. OVOMobZai

    OVOMobZai
    Expand Collapse
    High Risk Status: This user has been flagged as high risk due to one or more reasons

    0   0   0

    Offline
    Hi. I really wanted to get started with CF #. I know some programming, but I want to start with finding addys.

    Here's what I've done so far:

    - Got LoadLib.exe
    - Placed it in CF folder
    - Dragged CSHELL.DLL on top of LoadLib.exe, and it said it's been loaded
    - Opened Olly
    - Attached the process

    now here's where it starts going sideways...

    All the tutorials told me, "click view, select cshell.dll".

    I right click, I don't even see "view". This is all I see:

    [​IMG]

    So what I did next was, since there wasn't view option to open CSHELL, I decided to Search for -> All referenced text

    In which it takes me to around 60% then olly crashed.

    But when I re-open Olly and attach the same LoadLib, this time it works, I have the view option

    However, there are 2 problems:

    1. LoadLib opens another windows, it's blank (maybe it's supposed to do that, I don't know)
    [​IMG]

    2. There is no CSHELL.DLL in the "view" option...
    [​IMG]

    But yet again, it's okay, I think I've found a way to fix it /mmz. All I did was pressed the little play button at the top to run the debugger

    then BAM! CSHELL APPEARS!

    [​IMG]

    Cool, so there we go, I found Cshell and everything is working perfect from here on out, right?

    Wrong...

    I click on search all referenced whatever, then I get this... Garbled up messages (probably encrypted)

    [​IMG]

    So yeah, this is where I'm stuck. If anyone can help me out with this. Please do bare with me if I'm doing something terribly wrong or using outdated methods, I'm following an old tutorial because it's the only option there is, no one makes CF tutorials anymore


    - - - Updated - - -

    I hate my life. I spend like 15 minutes putting this thread together only to figure it out minutes after.

    I used PETools to dump the CSHELL and surprisingly it worked... I just opened the dumped DLL straight from Olly and now I can see addys.

    Thank you, someone close the thread pls @Hugo Boss @Hunter
     
    • This user is inactive. Hasn't logged into their account in over 60 days.
Thread Status:
Not open for further replies.