Debug process from entry point with Cheat Engine

Published: 14 May 2023
on channel: リレミト
5,228
34

https://hostr.co/ukZlrY8YAEaU
https://github.com/Riremito/DebugFrom...

this program injects "call MessageBoxW" code to the process
if you set BP at MessageBoxW's ret code, process will be stopped at the address when you press OK button
so you can debug process from entry point with CE

using ollydbg can do it, but debugger is often detected by process
this method may ignore anti debug tricks

Injected code

push eax
push ebx
push 009B0000 // L"user32.dll"
call KERNEL32.LoadLibraryW
push 00
push 009B0016 // text
push 009B003E // text
push 00
call USER32.MessageBoxW
pop ebx
pop eax
jmp ntdll.RtlUserThreadStart


On this page of the site you can watch the video online Debug process from entry point with Cheat Engine with a duration of hours minute second in good quality, which was uploaded by the user リレミト 14 May 2023, share the link with friends and acquaintances, this video has already been watched 5,228 times on youtube and it was liked by 34 viewers. Enjoy your viewing!