Unpacking VMProtect 2.x

2009-12-7 22:38
Hello,as I promised here comes the next movie tutorial and a updated script which now also supports VMProtect 2.0.As always you can see in the movie how to use it correctly.My unpack target which I have selected was the VMProtect 2.0 Ultimate itself [Demo] version.I also declare you how to rebuild the OEP in this target.Moreover you will see a second show movie about the VMProtect 2.0.1.2 itself which I also unpacked.This version has some more features than the Ultimate version.

So I fixed also some small bugs in the script and added some more functions.So read all messages which you get with attention before you press a button.For VMP 1.8 - 2.0 you can choose the API TRACER to get all needed addresses,dwords,api´s,module infos into a new file.The trace proccess can take a longer time if you work with a low system so for this problem I have added the possibility that you can always cancel the current proccess.Just stop the script if you want......if you then restart Olly and the script then it will work further from the last stop.

Some words to the "PE Header Fixing".This you will need for example for the VMProtect 2.0.1.2 itself so till now it was the only target which I have found which used this protection but I added the fix function also now in the new script.Just use it if you need it.It can also prevent some "File corrupted!...." messages.If you get still this message after fixing the PE then your target can also use some CRC checks.

点击在新窗口中浏览此图片

作者:zgmap@zgmap
地址:http://www.zgmap.com/Unpacking-VMprotect-2x/
版权所有©转载时必须以链接形式注明作者和原始出处及本声明!

2010/01/03 14:02
好东东呢
多谢楼主
CAPS
2009/12/12 20:12
最喜欢你这里了~~~~~~
CAPS
2009/12/12 20:12
顶起了~~~~~~~~~~~~~~~~~
请教
2009/12/09 15:24
看不懂英文,那脚本不知道如何用啊。请教一下,
分页: 1/1 第一页 1 最后页
发表评论
昵称 [注册]
密码 游客无需密码
网址
电邮
打开HTML 打开UBB 打开表情 隐藏 记住我
emotemotemotemotemotemotemotemotemotemotemotemot
emotemotemotemotemotemotemotemotemotemotemotemot