Exetools

Exetools (https://forum.exetools.com/index.php)
-   Community Tools (https://forum.exetools.com/forumdisplay.php?f=47)
-   -   de4dot - Deobfuscator for .NET (https://forum.exetools.com/showthread.php?t=13951)

s0me0n3 09-11-2014 04:06

Quote:

Originally Posted by Cyber_Coder (Post 94521)
i have right to post thx i am junior member

Well Dreamer, just imagine everyone would post "thank you" once over 15 posts, how would the forum look then? :(

Oh, eXoDia was faster, seems we share an opinion.

SubzEro 09-11-2014 04:07

no its ok i will not post match thx post

sendersu 09-11-2014 05:51

@nikkapedd

could you elaborate on "antinet" component?
as far as I know it is not a part of de4dot distribution

SubzEro 09-11-2014 05:52

cannot edit my previus post i am not him i am not dreamer stop saying that

n00b 09-11-2014 14:49

Is the project dead or something? Cuz I suddenly cannot access the BitBucket address anymore :(

LordCoder 09-11-2014 18:21

Quote:

Originally Posted by n00b (Post 94534)
Is the project dead or something? Cuz I suddenly cannot access the BitBucket address anymore :(

0xd4d migrated to github again. See: https://github.com/0xd4d/de4dot

Git 09-11-2014 21:46

I thought we were deleting ALL thank you posts?. Otherwise, why do we have a Thanks button?

Git

s0me0n3 09-11-2014 22:04

Ye, the rule is technically there that you are allowed to spam it after 15 posts but well, it wasn't done this way at all since I am here and even longer (silent reader over years) and where is the point to do so? It's just bad and makes this forum worse.

SubzEro 09-12-2014 13:01

ok I apologize for thank you post no more thank you post

rooster1 02-08-2015 01:50

does the latest edition of de4dot deobfuscate the latest eazfuscator. my version i have deobs it but throws errors when the unpacked is ran.

NoYes 02-08-2015 14:32

It seems that this project is dead.

Codeman 02-08-2015 17:49

hope it will continue. otherwise it will be more difficult to unpack .net, but it seems it's dead for now.

giv 02-08-2015 20:30

Quote:

Originally Posted by Codeman (Post 97417)
hope it will continue. otherwise it will be more difficult to unpack .net, but it seems it's dead for now.

For those who does not know all start when a private version was leaked from VIP area by a VIP of Exetools.

Don't worry.
Common obfuscations will always have a tool coded for deobfuscate.
Or you can start to learn I.L. and maybe make your own deobfuscator or modify de4dot to adapt to new requirements.

sendersu 02-08-2015 21:07

I propose to put the discussion of de4dot improvements/support of new protectors/obfuscators here..
for example, I've an idea to add support for the AppFuscator. There is one real challenge for me - the mathematics used by that tool. In theory it is simple - you need to collecct and calculate all the math for all the input variables for the method, that decrypts the strings for your executable. I know that de4dot has a kind of emulator/simulator for the I.L. operands execution, but the case is how to identify what math is going to be used for each specific str decryptor, as in reality it takes tens of instructions (different number on different calls)

leetone 03-31-2015 11:40

sendersu, this version exists, it's just VIP only. Now, if you're interested in sharing it that'd be sweet!

Just wanted to bump the thread of the best .NET tool for RCE.


All times are GMT +8. The time now is 01:02.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX