Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yeah, I put labels corresponding to the original IP throughout and used a jump table.


That's pretty cool! I just transliterated the instructions into C macros; but i didn't bother with the jump tables. The nice thing with this approach is that you can mix vm instructions with c code freely; and get gdb support. I needed that because speeding up via C wasnt enough to decode the full URL and I still needed to do additional reversing.

Was your method fast enough to get all three parts of the URL?


It produces the full domain name (up to .com) in ~ 1 minute. If there is more to the url (a path, ?= parameters, etc) after the domain name, then no.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: