吾爱破解 - LCG - LSG |安卓破解|病毒分析|www.52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 5894|回复: 6
收起左侧

[OllyDbg 1.x Plugin] Oreans UnVirtualizer ODBG Plug-in (WL/TMD/CV)

[复制链接]
Hmily 发表于 2011-3-26 12:32
IDA,">Hi All

This tool will help conversion VirtualOpcodes -> Assembly Instruction
restoring the original code of your virtualized Application, the basic engine
was from CodeUnvirtualizer, my other tool

[Features]
- Supports WinLicense/Themida/CodeVirtualizer Cisc Machines
- Supports almost all common opcodes
- Supports CHECK_MACRO_PROTECTION
- Supppots MultiBranch Tech

[Use]
- Right-click on the jump leading to the Virtual Machine Area and press Unvirtualize (If machine isn't found
you have to click again, after checking that the full machine was correctly deofuscated)


[Oreans UnVirtualizer]
[v1.0]
- First public Version

[Request]
- Since is almost impossible to create a full database with every opcode combination
I would appreciate if you got errors by some unknown opcodes, wrong decompiled, etc
a full diagnosis including Cisc_Vo_Dump.txt, Cisc_Vo_Syntax.txt, Cisc_Uv_Dump.txt and
Cisc_Iat_XXXXXX.txt file on your report


http://www.mediafire.com/?nxiwurv6rd7njhj
New Version

[v1.1]
- Fixed Decode GenV1
- Added CALL [EBX+ESI+0x234234]
- Video logs Added
- Updated OreansJunk.cfg

Video Samples
http://www.sendspace.com/file/1lscnw
[v1.2]
- Fixed Decode MovV1
- Added REP - REPNE - CMPS - MOVS - LODS - STOS - SCAS Instructions
- Added CISC-2 Micro-opcodes UnVirtualizer
- Fixed Decode MovV2
- OreansJunk.cfg updated
- OreansAssembler.cfg updated
- Added Virtual Opcode Mutation Tech
- Fixed Jcc Jumps leading outside Virtual Machine
- Fixed Crash on reading Register Handlers
- Cisc_Vo_Dump.txt is no longer created


[v1.3]
- Fixed Identifying Some handler variants
- Added NEG - NOT - BSWAP instructions
- Updated OreansAssembler
- Added Options Panel
- Added Hotkeys
- Added UnVirtualize With/Without Jumps
- Fixed DeOfuscation GenV4
- Added optimization on reading virtual labels
- Updated references panel
http://www.mediafire.com/?yy0tyhunu7wnbyp



OreansUnVirtualizerv1.0.rar

68.62 KB, 下载次数: 37, 下载积分: 吾爱币 -1 CB

Oreans UnVirtualizer 1.2.rar

308.78 KB, 下载次数: 42, 下载积分: 吾爱币 -1 CB

Oreans UnVirtualizer 1.3.rar

311.85 KB, 下载次数: 41, 下载积分: 吾爱币 -1 CB

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

wocai 发表于 2011-3-26 12:40
老大,这东西干什么用的呢。 全是英文看不懂。  应该是个OD的插件吧,
yusy 发表于 2011-3-26 13:34
langxian912 发表于 2011-3-26 15:00
gry8686 发表于 2011-3-26 18:44
不错,支持楼主的分享
basketwill 发表于 2011-3-28 10:22
支持下 不错
 楼主| Hmily 发表于 2011-3-31 10:15
Oreans UnVirtualizer 1.3更新了.
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则 警告:本版块禁止灌水或回复与主题无关内容,违者重罚!

快速回复 收藏帖子 返回列表 搜索

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-5-14 19:05

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表