首页
社区
课程
招聘
[转帖]Scylla x64/x86 Imports Reconstruction 0.7 Beta 7 by Aguila
发表于: 2012-10-2 14:37 2403

[转帖]Scylla x64/x86 Imports Reconstruction 0.7 Beta 7 by Aguila

2012-10-2 14:37
2403
Scylla x64/x86 Imports Reconstruction 0.7 Beta 7
From:EXETOOLS
http://forum.exetools.com/showpost.php?p=80829&postcount=29

Changelog
- fixed bug in the dump engine: more details here http://forum.tuts4you.com/topic/30060-bug-when-fixing-dump/
- added "suspend process option", look in options dialog: more details here http://waleedassar.blogspot.com/2012/09/anti-dumping-part-3.html

Scylla_v0.7beta7.rar

[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课

上传的附件:
收藏
免费 1
支持
分享
最新回复 (3)
雪    币: 506
活跃值: (318)
能力值: ( LV3,RANK:20 )
在线值:
发帖
回帖
粉丝
2
thank,thank,,,
2012-10-8 10:58
0
雪    币: 97697
活跃值: (200834)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
3
If you try to FIX DUMP an executable with the IMAGE_NT_HEADERS structure
overlapping the IMAGE_DOS_HEADER i.e. the e_lfanew  field has a value less than or
equal to 0x38 (and of course, greater than or equal to 0x2), the resulting executable
is rejected by the windows PE loader.
Scylla_v0.7beta8.rar
上传的附件:
2012-10-18 20:20
0
雪    币: 97697
活跃值: (200834)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
4
Scylla x64/x86 Imports Reconstruction by Aguila
ImpREC, CHimpREC, Imports Fixer... this are all great tools to rebuild an import table, but they all have some major disadvantages, so I decided to create my own tool for this job.

Scylla's key benefits are:

- x64 and x86 support
- full unicode support (probably some russian or chinese will like this :-) )
- written in C/C++
- plugin support
- works great with Windows 7

And the best, Scylla is open source under the GNU GPL v3.

Basically, it's ImpRec on speed  If you miss a feature or want to report a bug,
head on over to the support forum on Tuts4You.
上传的附件:
2012-10-18 20:30
0
游客
登录 | 注册 方可回帖
返回
//