Jump to content
Tuts 4 You

9 files

  1. Enigma Protector 1.90 - 3.xx Alternativ Unpacker v1.1

    Today I release an unpacker script for Enigma Protector. Maybe you know that I created another unpacker script for Enigma in the past which no-longer works for protected Enigma files greater than 3.70+ and this is the reason why I wrote a new script, Enigma Alternativ Unpacker 1.0.

    So what is new in this script? This script will unpack your Enigma protected files and dump the used outer virtual machine. This means you do not need to use the DV / Enigma plugin which is used in my other script. Of course the virtual machine will be still virtualized but your unpacked files will work. It is not the best solution but for the moment it is a good "alternativ" and a working solution.

    Features of the script:

    ( 1.) Unpacking of ENIGMA 1.90 - 3.130+
    ( 2.) RegSheme Bypass & HWID Changer
    ( 3.) Enigma CheckUp Killer
    ( 4.) VirtualMemory Dumper 1.90 - 3.x+ & SC Fixer M1
    ( 5.) UIF Tool Necessary Sometimes!
    ( 6.) Enigma Intern Export & VM Scan + Log
    ( 7.) Improved Import Emulation Fixer
    ( 8.) Supports Exe & Dll Files [dll at EP!]

    This new script again covers almost all the protection features of Enigma Protector like my other script but it has been improved and I have added some extra things that you will see when you get to use it.

    I have created four video tutorials for you where you can see what you have to do in some of the different situations you may experience. Be sure that you "watch the videos" before you use the script to prevent some unnecessary questions where you can already find the answers if you watch them and then read my added text files. I also made an UnpackMe set with six different protected files (watch videos how to unpack all of them).

    If something does not work for you or if you get any trouble or have any questions then just post a reply on the topic (linked above) to get an answer.




  2. Enigma Protector 1.51 (Unpacking)

    Requirement Software: OllyDBG, ImportREC, LordPE
    Level: Intermediate

    With all Protections:
    Control sum checkup File analyzer deception Original file size preservation Extra resource protection Advanced force import protection WinApi Redirection WinApi emulation A file attached to executable File Entrypoint obfuscation Virtual Machine




  3. Enigma Protector 1.xx - 3.xx Vol.1 (Unpacking)

    Today I release - finally - the series of unpacking tutorials about manually unpacking The Enigma Protector. I will discuss all protections of Enigma which are fully detailed as possible.

    I have to say thanks to LCF-AT, she helped me a lot with this.
    Introduction ~ 9:28 Unpacking with patterns ~ 33:03 Finding patch-places without patterns ~ 19:56 Dealing with SDK API's & Custom Emulated API's ~ 28:23 Internal & External VM's (Using Plugin) ~ 5:40 Enigma's Registration Scheme ~ 15:37 EN-DE-Cryption ~ 33:21 Inline patching + Final Words ~ 11:56




  4. Enigma Protector 4.10 (Unpacking)

    A video tutorial showing a method of unpacking Enigma Protector 4.10.




  5. Enigma 1.5 (All Protections No Virtual Machine)

    A Shockwave Flash movie tutorial showing a method of unpacking The Enigma Protector 1.5 with all options enabled - except for Virtual Machine protection.




  6. Enigma 1.6x (Find OEP + IAT Repair)

    Two Shockwave Flash movies showing how to find the OEP and rebuild the IAT of Enigma 1.6x protected files.




  7. Enigma 1.12 (Unpacking)

    This is a tutorial on how to go about unpacking Enigma Protector 1.12 explaining how to bypass the anti-debugging tricks, stolen bytes and repairing the imports of Enigma's Import Elimination method.




  8. Enigma 1.xx - 3.xx Virtual Machine Unpacker v1.0

    It is time to release my new unpack script after a long time and it's also a very large one with more than 7000 lines.

    The title already states it is an unpacker script for Enigma protected files. Again I tried to create a script which can handle almost any version and features and the handling of this script is again very easy for you. In the best case you only need to fix the dump.

    Note: The script uses four different DLL files which you will find in the tools folder so don't forget to enter your paths + save script before you use it the first time. Don't exchange the DLL's with other DLL versions!. Just read the text files or watch the first video and you should throw an eye into Olly LOG window to get some info about your file, etc.
    Enigma 1.x - 3.x Virtual Machine Unpacker v1.0 **************************************************** ( 1.) Unpacking of ENIGMA 1.x - 3.x ( 2.) Overlay Scan & Dump ( 3.) Enigma Version & Extra Data Scan ( 4.) Attached File Dumper ( 5.) Dumping of Clean & Fixed ENIGMA DLL_Loader ( 6.) Read - Log - Labeling of DLL_Loader Exports ( 7.) RegSheme Bypass for Old & New Versions ( 8.) HWID Changer for Old & New Versions ( 9.) Extra File Dumper - VBox ( 10.) VirtualMemory Fixer 1.96 - 3.7+ ( 11.) Stolen Code Fixer ( 12.) VM OEP Scan & Move & Adjustment ( 13.) Advanced Code Redirector ( 14.) IAT Scanner ( 15.) Visual Basic API Fixer ( 16.) Visual Basic Dll Function Logger ( 17.) ENIGMA DLL_Loader SDK API Fixer ( 18.) Extra File SDK API Fixer ( 19.) TLS CB FIXER ( 20.) TLS Pointer Scan & Fixer ( 21.) PE Header Size Increase ( 22.) Main File Dumper ( 23.) GetStartupInfo Patcher ( 24.) Special Anti Patcher ( 25.) Supports Exe & Dll Files ( 26.) Supports Very Easy User Handling **************************************************** I tested this script with a lot of different files to get them successfully unpacked and all in all I am satisfied so far. Of course I created some example videos where you can see how to unpack Enigma files and have written some text files with information about the important stuff. Just read the files before you want to use the script.

    If something does not work for you or if you get any trouble or have any questions then just post a reply on the support topic to get an answer. Let me know if you find any normal Enigma protected files which can't handle the script.

    PS: Before you ask about an Enigma unpack trouble be SURE that you did read all info files & script infos inside the script!




  9. Lenas UnPackMe #8 Unpacking

    A Shockwave Flash movie showing how to unpack Lena's unpackme #8.




  • Create New...