吾爱破解 - LCG - LSG |安卓破解|病毒分析|www.52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 2865|回复: 5
收起左侧

[Unpackers] Magicmida - Themida unpacker

[复制链接]
风吹屁屁凉 发表于 2023-4-25 13:25

Magicmida

Magicmida is a Themida auto-unpacker that works on some 32-bit applications. It works on all versions of Windows (XP and later).

Functions:

  • Unpack: Unpacks the binary you select. The unpacked binary will be saved with an U suffix.
  • MakeDataSects: Restores .rdata/.data sections. Only works on very specific targets.
  • Dump process: Allows you to enter the PID of a running process whose .text section will be dumped (overwritten) into an already unpacked file. This is useful after using Oreans Unvirtualizer in OllyDbg. Only works properly if MakeDataSects was done before.
  • Shrink: Deletes all sections that are no longer needed (if you unvirtualized or if your binary does not use virtualization). Warning: This will break your binary for non-MSVC compilers.

Note: The tool focuses on cleanness of the resulting binaries. Things such as VM anti-dump are explicitly not fixed. If your target has a virtualized entrypoint, the resulting dump will be broken and won't run (except for MSVC6, which has special fixup code to restore the OEP).

Important: Never activate any compatibility mode options for Magicmida or for the target you're unpacking. It would very likely screw up the unpacking process due to shimming.

Anti-anti-debugging

Newer versions of Themida detect hardware breakpoints. In order to deal with this, injecting ScyllaHide is supported. A suitable profile is shipped with Magicmida. You just need to download SycllaHide and put HookLibraryx86.dll and InjectorCLIx86.exe next to Magicmida.exe. Do not overwrite scylla_hide.ini unless you know what you're doing.

https://github.com/Hendi48/Magicmida/releases

Magicmida.zip

905.35 KB, 下载次数: 150, 下载积分: 吾爱币 -1 CB

本帖被以下淘专辑推荐:

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

xie83544109 发表于 2023-4-25 13:39

多谢楼主分享,虽然用不上
gcode 发表于 2023-4-25 22:31
wasm2023 发表于 2023-4-26 08:23
感谢楼主,请问能发下flutter逆向方面的工具呢
jianghan4733 发表于 2023-4-26 12:46
现在的年轻人,不努力工作,整天就会抱怨社会不公,Peace在南宁也算是个白领,月薪1900,也不是富二代,看看他是怎么用一年时间在南宁买别墅吧:一年前,他上班坐公车,学着自己做饭,不去酒吧,不抽烟,不赌博,省吃俭用,
HAINING 发表于 2023-4-26 19:26
好工具,不错不错!
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则 警告:本版块禁止灌水或回复与主题无关内容,违者重罚!

快速回复 收藏帖子 返回列表 搜索

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-5-1 21:34

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表