Stack trace translation

Issues related to VMProtect
Post Reply
David
Posts: 1
Joined: Mon Sep 15, 2014 11:26 am

Stack trace translation

Post by David »

Hi,

We like to collect stack traces from user crashes. I've got the trace in the form of the program counter addresses for each stack frame.
I can get the symbols using dbghelp.dll and the pdb in the usual manner before protecting.

Is there a tool to translate those back to what they were before protecting, so I can get the symbols etc?

I've seen the MiniDumpFixer.exe, but I'd rather not start collecting minidumps unless I absoluely have to.
Admin
Site Admin
Posts: 2813
Joined: Mon Aug 21, 2006 8:19 pm
Location: Russia, E-burg
Contact:

Re: Stack trace translation

Post by Admin »

VMProtect changes EIP of virtualized/compiled commands, so it's impossible to translate new EIPs to old addresses
muhammadayoub
Posts: 7
Joined: Mon Mar 09, 2026 10:01 am

Re: Stack trace translation

Post by muhammadayoub »

Just curious, is it still same in vmprotect? or we can get the backtrace from the protected binary somehow?

What are the recommended ways to generate a backtrace for crash in protected binary?
Post Reply