Closed qoomon closed 2 years ago
The whole reverse process isn't too complicated. It uses the keyword "expired," looks up the specific execution method, overwrites it with an empty method, and repackages the new executable file (because the software isn't encrypted, the repackaged file is available and doesn't crash).
By the way, the only working reverse software I found was the Hopper Disassembler
Thanks a lot.
Hi first of all thanks for your patch.
Anyway could you provide some details on how you managed to patch the executable?