[ / / / / / / / / / / / / / ] [ dir / arepa / fast / hentai / just / leftpol / sonyeon / tacos / vichan ][Options][ watchlist ]

/tech/ - Technology

You can now write text to your AI-generated image at https://aiproto.com It is currently free to use for Proto members.
Email
Comment *
File
Select/drop/paste files here
Password (Randomized for file and post deletion; you may also set your own.)
* = required field[▶ Show post options & limits]
Confused? See the FAQ.
Expand all images

[–]

 No.953252>>953300 [Watch Thread][Show All Posts]

I ran Windows 7 since it had the reverse engineering tools and the programs to reverse engineer. I don't want to constantly reboot between operating systems, and I found one of the games I reverse as a hobby ran just ok on Wine.

Has anyone any commentary on reverse engineering Windows programs running on Wine with available Linux tools? I'm not familiar with the latter etiher, so recommendations help.

 No.953263>>953266 >>953300 >>954426

i've had decent luck running cheat engine in wine against windows emulators (don't ask). i can't say the same for olly, :''(.

as far as i can tell, all my hand written asm works in wine, too. so i think most trainers are safe.


 No.953266>>953273

>>953263

Any specific version or tweaks you had to do? I assumed tools running through wine wouldn't be a good idea.


 No.953267

When I was using mingw and wine to write windows programs without windows, it didn't work well. I don't know how many versions of wine that was ago. I am not sure which call I was having problems with, but if I remember correctly, it was a native api call for a WinSock connection.


 No.953272>>953290 >>953300

IDA Pro doesn't run on Linux?

There's Radare2.


 No.953273

>>953266

i just installed the apps normally, then for winecfg i enable the hw acceleration stuff in staging, except the deprecated one.

yeah, that's what i would think, as well. haha, weird thing is the emulator runs faster in wine. could just be my imagination, though. i think software complexity and its relationship to api and shit is the main thing that determines compatibility. ymmv :)))


 No.953290>>953609 >>954237

>>953272

radare2 is an autistic and shitty version of IDA Pro.

I do reverse engineering via kvm+qemu. WINE would just be suffering.


 No.953300>>954271

>>953252 (OP)

If you are just doing static analysis, you don't even need wine.

>>953263

<cheat engine

I've used scanmem for a similar usecase to develop my own "cheats."

>>953272

>IDA Pro doesn't run on Linux?

Wrong. It runs natively. You can even get a freeware copy that is limited to x86_64 (aka 64 bit) binaries. It also runs perfectly in wine.


 No.953609

>>953290

That's actually my plan in the future, would such a setup play well with pci passthrough? I'm not too interested in what the gpu is doing from a reversing perspective, but you never know.


 No.953622

Snowman decompiler worked in WINE, even on ELFs


 No.954237>>954296

>>953290

>radare2 is an autistic and shitty version of IDA Pro.

In what particular way?

I haven't tried it so I guess I'll give it a go.


 No.954271>>954309

>>953300

>You can even get a freeware copy that is limited to x86_64 (aka 64 bit) binaries.

I'm pretty the freeware version is for 32bits only.


 No.954296>>954416

>>954237

It's bloated with esoteric and partially implemented commands that were probably only useful to one guy one time, it's unstable and prone to lose everything you've been doing due to a typo, automatic analysis is very poor compared to IDA (which is what I'd mainly want to use it for), and doing things that should be simple and automatic are almost intentionally fussy. When you look at the feature set you might wonder "so why is anyone still using IDA and x64dbg?" and then you try using it and learn why.

The advantages are that it has a much wider scope, is portable, and you've got the source.


 No.954309

>>954271

Nope, they updated it a few months ago. I'm not sure if you can still do 32bit binaries now or if it's only 64bit.


 No.954416

>>954296

damn shame, the feature set looks nice and i was hoping for a good free reversing tool


 No.954426>>954427

>>953263

>Cheat Engine

Does L. Spiro's Memory Hacking Software work well in WINE? I prefer it over CE. This thing: http://www.memoryhacking.com/


 No.954427>>955589

>>954426

why use this over CE which still receives updates?


 No.955589

>>954427

Because it does a good job.




[Return][Go to top][Catalog][Screencap][Nerve Center][Cancer][Update] ( Scroll to new posts) ( Auto) 5
17 replies | 0 images | Page ?
[Post a Reply]
[ / / / / / / / / / / / / / ] [ dir / arepa / fast / hentai / just / leftpol / sonyeon / tacos / vichan ][ watchlist ]