Jump to content
Tuts 4 You

Leaderboard

  1. Teddy Rogers

    Teddy Rogers

    Administrator


    • Points

      74

    • Posts

      9,098


  2. Skarz

    Skarz

    Full Member


    • Points

      24

    • Posts

      96


  3. kruzco

    kruzco

    Full Member


    • Points

      16

    • Posts

      46


  4. whoknows

    whoknows

    Full Member+


    • Points

      10

    • Posts

      1,013


Popular Content

Showing content with the highest reputation since 07/20/2009 in Files

  1. 28,904 downloads

    A collection of tutorials aimed particularly for newbie reverse engineers. 01. Olly + assembler + patching a basic reverseme 02. Keyfiling the reverseme + assembler 03. Basic nag removal + header problems 04. Basic + aesthetic patching 05. Comparing on changes in cond jumps, animate over/in, breakpoints 06. "The plain stupid patching method", searching for textstrings 07. Intermediate level patching, Kanal in PEiD 08. Debugging with W32Dasm, RVA, VA and offset, using LordPE as a hexeditor 09. Explaining the Visual Basic concept, introduction to SmartCheck and configuration 10. Continued reversing techniques in VB, use of decompilers and a basic anti-anti-trick 11. Intermediate patching using Olly's "pane window" 12. Guiding a program by multiple patching. 13. The use of API's in software, avoiding doublechecking tricks 14. More difficult schemes and an introduction to inline patching 15. How to study behaviour in the code, continued inlining using a pointer 16. Reversing using resources 17. Insights and practice in basic (self)keygenning 18. Diversion code, encryption/decryption, selfmodifying code and polymorphism 19. Debugger detected and anti-anti-techniques 20. Packers and protectors : an introduction 21. Imports rebuilding 22. API Redirection 23. Stolen bytes 24. Patching at runtime using loaders from lena151 original 25. Continued patching at runtime & unpacking armadillo standard protection 26. Machine specific loaders, unpacking & debugging armadillo 27. tElock + advanced patching 28. Bypassing & killing server checks 29. Killing & inlining a more difficult server check 30. SFX, Run Trace & more advanced string searching 31. Delphi in Olly & DeDe 32. Author tricks, HIEW & approaches in inline patching 33. The FPU, integrity checks & loader versus patcher 34. Reversing techniques in packed software & a S&R loader for ASProtect 35. Inlining inside polymorphic code 36. Keygenning 37. In-depth unpacking & anti-anti-debugging a combination packer / protector 38. Unpacking continued & debugger detection by DLL's and TLS 39. Inlining a blowfish scheme in a packed & CRC protected dll + unpacking Asprotect SKE 2.2 40. Obfuscation and algorithm hiding
    11 points
  2. Version 1.7

    3,865 downloads

    REPT KeyGen Maker is an utility to make keygens easily without having a programming knowledges. Please report any bug/improve to make it better This is currently done in .NET so will need .NET Framework 3.5 or higher. Thanks for download it!
    7 points
  3. 12,578 downloads

    Many of you may be amazed at Guru LCF-AT's script "VMProtect API Turbo Tracer 1.2". But for most of the newbies, just like me, you may have a lot of problems in getting the script work properly in your own Ollydbg. LCF-AT already uploaded a lot of Ollydbg setting information togehter with the script to help us fix those Ollydbg problems, but there are too many details. Yes, I suffered a lot at the inital stage when I was trying to use "VMProtect API Turbo Tracer 1.1" by my chinese version "Terminator Ollydbg 1.1.0". Under LCF-AT's kind help, I created this basic version Ollydbg 1.1.0, which is specially for running "VMProtect API Turbo Tracer 1.1". And it works smoothly in my laptop, with Windows XP Professional SP3. If you like, get it and give it a try. Enjoy Cracking!!
    7 points
  4. Version 1.0.1

    214 downloads

    Hello friends . new uppp interface. do you like it ? try! Respects by SKARZ
    6 points
  5. Version v 1.0

    1,173 downloads

    hey guys i create a program for serial sniff by vb6 esc features : check crc(automatic) unicode string small size background music bypass packers and ..... sorry for my english (im persian) enjoy it
    6 points
  6. Version v1.1 & v2.0 & Sh

    3,498 downloads

    OllyDbg with Plugin + OllyDBG v1.1 + OllyDBG v2.0.1 + OllyDBG Shadow GUI with Vic Plug-In Enjoy !
    5 points
  7. Version 1.0.0

    77 downloads

    hotkeys: m: (play/stop music) f1: (switch fullscreen/windows) f3: (nfo reader) elite: (hidden part) esc: (quit)
    5 points
  8. Version 1.7

    2,118 downloads

    Bundle of .NET tools! The development ended @ 2012 with v1.7. Main reason is to defeat strong name validation, on the other hand third party tools merged! ACorns.Hawkeye Is the only .Net tool that allows you to view, edit, analyze and invoke (almost) any object from a .Net application. Whenever you try to debug, test, change or understand an application, Hawkeye can help. CFF Explorer-NTCore Designed to make PE editing as easy as possible, but without losing sight on the portable executable's internal structure. HwndSpy-dp0 Is an invaluable tool for developers doing maintenance on GUI applications, where they first need to understand the windows hierarchy and how the windows are structured. HxD-Mael Horz Is a carefully designed and fast hex editor which, additionally to raw disk editing and modifying of main memory (RAM), handles files of any size. Mono.Cecil-Evain Is a library to generate and inspect programs and libraries in the ECMA CIL format. Procmon-SysInternals Is an advanced monitoring tool for Windows that shows real-time file system, Registry and process/thread activity. Resource2+4-fish Is a utility to easily refresh embedded resources in a .NET assembly. ResX Schema(*.resX), Embedded Resource(*.resources), Import/Export/View/Edit/Translate embedded resources, Text/Icon/Bitmap/Cursor/String/ImageListStreamer/PinnedBufferMemoryStream (v4)... SysTracer-blueproject Is a system utility tool that can scan and analyze your computer to find changed (added, modified or deleted) data into registry and files. de4dot-0xd4d Is an open source .NET deobfuscator and unpacker written in C#. Assembly_Resigner-CodeCracker HeaderFixer-CodeCracker NR_Bad_Net_Opcode_Remover-CodeCracker StrongName_Killer-CodeCracker Password to extract is bs
    5 points
  9. Version 1.0.0

    331 downloads

    hi guys, new UNDF. Skin version2 for dUP2 . Long Life Cracking GFX Resource based on World Of Crack D2's Skin Source .psd
    5 points
  10. 1,771 downloads

    I want to release a new tutorial about the popular theme Themida - WinLicense. So I see there seems to be still some open questions mostly if my older unpack script does not work anymore and the unpacked files to, etc. So this time I decided to create a little video series on how to unpack and deal with a newer protected Themida target manually where my older public script does fail. A friend of mine did protect unpackme's for this and in the tutorial you will see all steps from A-Z to get this unpackme successfully manually unpacked but this is only one example how you can do it, of course. So the tutorial [videos + text tutorial] is very long and has a run-time of more than three hours and of course it will be necessary that you also read the text parts I made at the same time if possible but if you are already a advanced user then you will have it easier than a newbie. So I hope that you have enough patience to work through the whole tutorial. So the main attention I set on all things which happen after normal unpacking so the unpack process is the simplest part and all what comes after is the most interesting part and how to deal with all problems that happen. It's more or less like a live unpack session. I also wrote some small basic little helper scripts which you can also use for other targets to get valuable information if you need. Short summation: Unpacking Exception analysing VM analysing with UV plugin AntiDump's find & fixing & redirecting "after fix method" Testing on other OS My Special Thanks goes to Lostin who made this unpackme and others + OS's tests. (I want to send a thank you to Deathway again for creating this very handy and helpfully UV plugin). So this is all I have to say about the tutorial so far, just watch and read and then try it by yourself. Oh! and by the way I record ten videos and not only one. If something does not work or you have any problems with this tutorial, etc. then ask in the support topic only. Don't send me tons of PM's, OK! Thank you in advance. PS: Oh! and before someone has again something to complain because of my tutorial style [goes to quickly or is bad or whatever] then I just want to say, maybe you're right so normally I don't like to create and write tutorials. This is really not my thing so keep this in your mind.
    4 points
  11. Version 1.0.0

    237 downloads

    hello friends , i hope you're having a good time . i spent all day trying to design a nice skin for DuP2 i've finished my work with a few mistakes . you know am a beginner and that's my first design , hope you like it Regards , Hamid .
    4 points
  12. Version 1.0.0

    215 downloads

    [URET Metal Skull dup]
    4 points
  13. Version 1.0.0

    135 downloads

    Hi, Guys Let yourself go, the harmony of classic colors MacOSX Style uPPP interface by.Skarz..
    4 points
  14. 304 downloads

    fonts i am most use for gfx
    3 points
  15. Version 1.12

    1,622 downloads

    This is a professional PE file explorer that lets you dig into all data directories available in the PE/PE64 file and edit them. Export, Import, Resource, Exception, Certificate(Relies on Windows API), Base Relocation, Debug, TLS, Load Config, Bound Import, IAT, Delay Import and CLR are supported. Two companion plugins are also provided. FileInfo, to query the file in the well-known malware repositories and take one-click technical information about the file such as its size, entropy, attributes, hashes, version info and so on. YaraPlugin, to test Yara rules against opened file. Puppy is robust against malformed and crafted PE files which makes it handy for reversers, malware researchers and those who want to inspect PE files in more details. Puppy is free and tries to be small, fast, nimble and friendly as your puppy! Website: https://www.mzrst.com/
    3 points
  16. Version 0.0.1

    275 downloads

    Thx all guys for creating AT4RE - my crazy skin "The Game"
    3 points
  17. Version 2.2

    729 downloads

    Bundle of .NET tools! Main reason is to defeat strong name validation, on the other hand third party tools merged! ACorns.Hawkeye Is the only .Net tool that allows you to view, edit, analyze and invoke (almost) any object from a .Net application. Whenever you try to debug, test, change or understand an application, Hawkeye can help. CFF Explorer-NTCore Designed to make PE editing as easy as possible, but without losing sight on the portable executable's internal structure. HwndSpy-dp0 Is an invaluable tool for developers doing maintenance on GUI applications, where they first need to understand the windows hierarchy and how the windows are structured. HxD-Mael Horz Is a carefully designed and fast hex editor which, additionally to raw disk editing and modifying of main memory (RAM), handles files of any size. Mono.Cecil-Evain Is a library to generate and inspect programs and libraries in the ECMA CIL format. Procmon-SysInternals Is an advanced monitoring tool for Windows that shows real-time file system, Registry and process/thread activity. Resource2+4-fish Is a utility to easily refresh embedded resources in a .NET assembly. ResX Schema(*.resX), Embedded Resource(*.resources), Import/Export/View/Edit/Translate embedded resources, Text/Icon/Bitmap/Cursor/String/ImageListStreamer/PinnedBufferMemoryStream (v4)... SysTracer-blueproject Is a system utility tool that can scan and analyze your computer to find changed (added, modified or deleted) data into registry and files. de4dot-0xd4d Is an open source .NET deobfuscator and unpacker written in C#. Assembly_Resigner-CodeCracker StrongName_Killer-CodeCracker
    3 points
  18. Version 1.0.0

    83 downloads

    Hello friends. I try to prepare a classic logo for the forum. -Feel free to use in your projects or documents. I hope you will like it. note:Source file only xcf format. for GIMP. sory for photoshop users. Detailed previw ( click to support button in forum page.)
    3 points
  19. Version 1.0.0

    242 downloads

    hi guys, new UNDF. Skin for dUP2 . Long Life Cracking
    3 points
  20. Version 700 Olly scripts

    6,242 downloads

    I know everyone Knows How To use this.But those hu dont know may goo on first of all download ollydbg script plugin from attachment and paste in olly directory... then extract this 700 scripts to any folder then simply detect any packed/protected file with peid or RDG and goto olly and plugin>run script and simply open the script belongs to any protection or packing...
    3 points
  21. Version 1.0.0

    907 downloads

    NEW dUP2 - Friendly with antivirus Password: tuts4you.com
    2 points
  22. Version 2.0

    1,201 downloads

    My very old generic crack generator. Supports skins, music and text scroller by your choice. - What does "generic" means? - It does not only patch concrete offsets but it's trying to find the same segments into the target app so it might be newer version of the app but the same parts of the code might exist so it cracks them. It's very old, I'm uploading it just to share it but if you feel it useful feel free to use it.
    2 points
  23. Version 7.6.210507

    415 downloads

    This (completely!) free version of IDA offers a privilege opportunity to see IDA in action. This light but powerful tool can quickly analyze the binary code samples and users can save and look closer at the analysis results. What’s included in the pack? Analyze both 32-bit and 64-bit applications Cloud-based x64 decompiler Local x86/x64 debugger included Support x86/x64 processors Save your analysis results Perpetual license The freeware version of IDA v7.6 comes with the following limitations: no commercial use is allowed lacks all features introduced in IDA > v7.6 cloud-based decompiler lacks certain advanced commands lacks support for many processors, file formats, etc… comes without technical support
    2 points
  24. 709 downloads

    Try to unpack or alternatively provide a serial. Protections used: Necrobit Antitampering Antidebug Obfuscation Code Virtualization + Shield with SNK
    2 points
  25. Version 1.8

    3,478 downloads

    OllyExt is a plugin for Olly 2.xx debugger. The main intention of this plugin is to provide the biggest anti-anti debugging features and bug fixes for Olly 2.xx. VMProtect support! The currently available commands are the following: Code Rip to Clipboard Code Rip to Clipboard Recursive Data Rip to Clipboard Signature Rip to Clipboard The currently supported protections are the following: IsDebuggerPresent NtGlobalFlag HeapFlag ForceFlag CheckRemoteDebuggerPresent OutputDebugString NtClose SeDebugPrivilege BlockInput ProcessDebugFlags ProcessDebugObjectHandle TerminateProcess NtSetInformationThread NtQueryObject FindWindow NtOpenProcess Process32First Process32Next ParentProcess GetTickCount timeGetTime QueryPerformanceCounter ZwGetContextThread NtSetContextThread KdDebuggerNotPresent KdDebuggerEnabled NtSetDebugFilterState ProtectDRX HideDRX DbgPrompt CreateThread NtSystemDebugControl Custom ( Write your own ) The currently supported bug fixes are the following: Caption change Kill Anti-Attach ( dll integrity check ) Requirements: Microsoft Visual C++ 2010 Redistributable Package (x86) OS support: Windows XP Windows Server 2003 R2 Windows Server 2008 R2 Windows 7 Windows Server 2012 Windows 8 Windows Server 2012 R2 Windows 8.1 Limitations: Because of missing PDK function data ripping is ONLY on 2.01 latest supported If you have any problem just notify me.
    2 points
  26. 609 downloads

    A premier collection of articles compiled by Fly from the now defunct UnPack China forum dated in 2007. Note that most of the content contained in this compilation is in Chinese, you may need to use a translator to fully understand some of the information it contains.
    2 points
  27. Version 0.1

    889 downloads

    This is a simple utility to convert between ImageBase, VA, RVA & File offset
    2 points
  28. Version 1.0.0

    94 downloads

    intro for WebScene.IR (ex-0777) gfxs included.
    2 points
  29. Version all

    343 downloads

    here sample
    2 points
  30. Version 1.0.0

    163 downloads

    [ Black & Yellow Skin ]URET ]
    2 points
  31. Version 1.0.0

    77 downloads

    [ H4ppy H4ll0ween ] URET ]
    2 points
  32. Version 1.0.0

    90 downloads

    [ p33k Skin uppp ]
    2 points
  33. Version 1.0

    113 downloads

    My Team Offical Super Octopus skin for dUP2. Author:Mind Code Made in China.My blog is here.
    2 points
  34. Version all

    74 downloads

    2 points
  35. Version 0.2

    1,470 downloads

    Hello everyone! I made a new utility for Team Rept called "REPT Patch Engine". As it name says, this patch engine provides you an easy to use interface to make different types of patch in one single executable. Currently it has 3 types of patching method: Hex Editor (Offset Patch) File Export Registry Patch This utility is made on .NET. I did NOT put any credit of "Created with REPT Patch Engine" because I wanted to make a new patch engine useful. Things to update for next versions: Compare files to see the offset of cracked and original file. DONE! Add custom skin If you need another thing to put on the patch tell me I hope you like it and it could be interesting to use. Fell free to use as you want. LordCoder
    2 points
  36. 351 downloads

    Did you see the great logo that cond0lence put in the gallery? Well I decided to use it in a new dUP skin for the new dUP version 2.15. This skin makes use of the new "bitmap button" feature ..... If you use it, please be sure to credit cond0lence for the SnD logo! Files included: example exe, resource, tune, and color file PS: This skin doesn't include the filename, url, author, or date fields..... so, if required, place this information into the release info box .
    2 points
  37. 3,212 downloads

    1- Gives some info about programs PE and sections !! 2- Converts Virtual to Real and Real to Virtual Offset !!
    2 points
  38. 138 downloads

    This unpackme was protected using NETProtect.IO using protection options shown in the screenshot. Nice to meet guys in forum.
    1 point
  39. 80 downloads

    This tutorial aim is show some simple techniques that can be used to reverse and patching Java target, a first classical approach will be about the class decompilation with JAD and JODE decompiler, then we can move into the JVM (Java virtual machine) analysis and deeper into the bytecode analysis and patching. In order to fix some concepts a simple Java CrackMe will be explored trough decompilation with the presented tool and bytecode patching by using IDA and Hex Editor. Of course this topic isn't new and was also covered into the past by other, but this essay will just point some well know concept and show some more hint about the Java patching, a minimum skill on the Java programming is needed to make code change and understand the program execution flow at the decompiled stage. Finally some consideration around how to better protect Java coded application was covered.
    1 point
  40. 54 downloads

    This project I made by myself, because I needed to constantly consult the opcodes to several of the assembly codes at the same time, wasting my attention from what I really needed to accomplish. Now with only one opened window I have access to all opcodes that I use when I am working in reversing engineering or developing, I hope it is useful for you. If you have some opcode that you want that I place in this help file, please send the text file. Intel 8086 Family Microsoft .NET Java SQLite
    1 point
  41. 43 downloads

    I made a video presenting an interesting keygenme. In this video you can see what is done and how is done to reverse a keygenme. If is too fast please press pause. Steps: 1. Running for the first time the keygenme 2. Detecting protection 3. Unprotecting 4. Analyse of the algo 5. Creating the keygen in VB. NET Express 2010 6. Bug testing 7. Finalising keygen 8. Testing keygen Hope someone will find this useful.
    1 point
  42. 159 downloads

    This article is the obvious culmination of the previous effort of writing the Rebel.NET application and the first of a two series of articles about the .NET framework internals and the protections available for .NET assemblies. The next article will be about .NET native compiling. As the JIT inner workings haven't been analyzed yet, .NET protections are quite naïf nowadays. This situation will rapidly change as soon as the reverse engineering community will focus its attention on this technology. These two articles are aimed to raise the consiousness about the current state of .NET protections and what is possible to achieve but hasn't been done yet. In particular, the current article about .NET code injection represents, let's say, the present, whereas the next one about .NET native compiling represents the future. What I'm presenting in these two articles is new at the time I'm writing it, but I expect it to become obsolete in less than a year. Of course, this is obvious as I'm moving the first steps out from current .NET protections in the direction of better ones. But this article isn't really about protections: exploring the .NET framework internals can be useful for many purposes. So, talking about protections is just a means to an end.
    1 point
  43. 251 downloads

    This easy tutorial will teach you how to unpack various DotNet packed files.
    1 point
  44. 296 downloads

    The Immortal Descendants started out as members of an IRC group on irc.prodigy.net called "Deadmen.Society" way back in 1995. As we gained skills, we realized that there were better, and more productive ways to spend our time. We (TR0YB0Y, Volatility, Raven, Mortis, Yakuza) left the Deadmen.Society and formed a new group, with new principles and theologies under the name "Immortal Descendants". Our goal for this new group, was a collective for friends to learn, and showcase their talent together. Things were good for awhile, but people lost interest, and three of the founding members, Yakuza, Raven And Mortis disappeared. TR0YB0Y and Volatility kept things running for a while, but eventually "REAL LIFE" caught up with them. March 1998, The Immortal Descendants Were No More. ...Seven months later... Volatility signed back online, and regained interest while looking through the old site. What you see now, is a "re-birth" of the Immortal Descendants. We've come a long way since the old lame IRC group days, to become a premiere knowledge group. Update 10-23-2001. Sadly as interest waned, The Immortal Descendants have moved forward onto other endeavors. Treasure this knowledge, expand on it, be inspired to share your knowledge with others.
    1 point
  45. Version v.2

    2,942 downloads

    My Team Offical Diabloo2002's Skin W.I.P
    1 point
  46. Version 1.0.0

    216 downloads

    [ Hitman skin ]
    1 point
  47. Version 1.0.0

    125 downloads

    hi,guys. try the new interface of the uppp. prepare a new look with modern colors. Soon, with a new update. other colors will be added. follow NOTE: Added .psd file
    1 point
  48. 29 downloads

    [Password] CriticalError
    1 point
  49. Version 0.9

    73 downloads

    File Include: - SkinFile.res - Chiptune.xm - Icon.ico - ColorScheme.ini - Screenshots
    1 point
  50. 224 downloads

    Featuring Pixel Art. There are three color variations included with this skin. Files included: resources, region, colors
    1 point
  • Newsletter

    Want to keep up to date with all our latest news and information?
    Sign Up
×
×
  • Create New...