吾爱破解 - LCG - LSG |安卓破解|病毒分析|www.52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 6574|回复: 7
收起左侧

[Other] Code Unvirtualizer 1.0

[复制链接]
Hmily 发表于 2011-3-11 02:12
Hi, as promised, here is a little tool that will help to reverse the CodeVirtualizer and the ThemIDA /WinLicense Virtual Machine

Must Remark , is a BETA, it suppors almost no opcodes, MultibranchSystem is not well implemented, but the handler deofuscation is, also there is a small engine that help to recognize the Iat position with the Handler ID

Information
- if you want a full diagnosis of a specific handler, chnage Diagnosis_Handler_Number on the ini file (read number as decimal)
- if Dump Virtual Machine doesn't fail it generates two txt files
. LogMatchIatData.txt conatins IAT with corresponding Handler ID
. LogVMData.txt contains decrypted data
- if GetVirtualOpcodes doesn't fail it generates two txt files
. LogVirtualOpcode.txt Contains the sequence of decrypted handlers id
. LogDumpedSyntax.txt contains the hnalderids in 'readable code'
- OreansSyntax.cfg contains the information to convert from ID to CVSyntax



GEtVirtualOpcode will fail if you didn't executed first DumpVirtualMachine(coz it reads LogMatchIatData.txt)

Bugs reporst and suggestions are welcome
have fun


Parameters
Number of Handlers MUST BE A8H


v0.1
[url=http://anonym.to/?http://www.sendspace.com/file/7258ou]http://www.sendspace.com/file/7258ou[/url]


v0.2
Little Update, deofucation system improved, also now support some MultiBranch System, OreansSyntax improved, Virtual Opcode reader stops at handler end

http://www.sendspace.com/file/86684o

Also added a help�r txt(CV_Syntax.txt) if you want to add more syntaxes (This is a referential file, is not readed by the application)


v0.3

- Virtual Opcode now detects labels and registers
- OreansSyntax.cfg Updated with common operations
- Now you can setup the number of handlers according to your VM
- VM Identify database is from 1.9.9.0(Themida) on newer version it can mismatch, but can be easily replaced with the corresponding handlers

http://www.sendspace.com/file/rrsj43

v1.0
http://www.sendspace.com/file/qk0y8d

Code UnVirtualizer 1.0.rar

1.25 MB, 下载次数: 165, 下载积分: 吾爱币 -1 CB

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

ycs 发表于 2011-3-11 20:59
神奇工具,不会用。
baby520 发表于 2011-3-11 23:00
klksys 发表于 2011-4-2 15:13
9298 发表于 2011-4-12 18:50
看看先
Destiny 发表于 2011-9-4 23:08
下载下来研究下
somylr 发表于 2011-9-12 10:57
谢谢分享,好像有1.2了
cjycompany 发表于 2012-3-22 17:00
我了个去,
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则 警告:本版块禁止灌水或回复与主题无关内容,违者重罚!

快速回复 收藏帖子 返回列表 搜索

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-4-29 20:44

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表