Exetools

Exetools (https://forum.exetools.com/index.php)
-   General Discussion (https://forum.exetools.com/forumdisplay.php?f=2)
-   -   ioncube_loader_win_8.4 NTS x64 (Patched Expire) (https://forum.exetools.com/showthread.php?t=21617)

Sh4DoVV 05-20-2026 14:00

ioncube_loader_win_8.4 NTS x64 (Patched Expire)
 
1 Attachment(s)
Hi
ioncube loader evaluation , bypassed expire encoded php

Sh4DoVV 05-20-2026 14:01

ioncube_loader_win_7.1 x64 (Patched Expire)
 
1 Attachment(s)
version 7.1

dawwinci 05-27-2026 18:58

PHP 7.1 (ionCube loader v14.4)
https://github.com/dawwinci/ic71dump-opcodes
  • Added logic to force dynamic-key decoding before dumping
  • Patched loader_win_7.1.dll for expiry/trial handling

PHP 7.4 (ionCube loader v15.5)
https://github.com/dawwinci/ic74dump-opcodes
  • Fix for ioncube.dynamickey protected method opcode dumping
  • Fix for obfuscated names of standard PHP functions
  • Fix for trial-expired encoded ionCube files

dawwinci 06-10-2026 04:54

New update — PHP 8.1 (ionCube Loader v15.5)
https://github.com/dawwinci/ic81dump-opcodes
  • Full opcode dumping for ionCube-encoded PHP files
  • Accurate opcode and jump target recovery
  • Structured JSON output containing literals and operands, plus a human-readable opcode dump

dawwinci 06-11-2026 03:58

If possible, and if you have files encoded with ionCube PHP 8.1, please share them so I can use them for debugging and testing.

It would help me a lot, especially if the files are more complex and heavily encoded. Thank you!

dawwinci 06-22-2026 15:39

New update:

ionCube PHP 8.1 Opcode Dumper — Runtime Execution (ionCube Loader v15.5)
https://github.com/dawwinci/ic81dump-opcodes
  • Dynamic-key providers can now execute and return the required decryption key.
  • VM capture is scoped to the protected target function.
  • Added safe handling for the loader’s static_variables / MAP_PTR state.
  • Added post-materialization and bailout recovery.
  • Restores modified op-arrays, globals, handlers, and temporary state after capture.

Release:

ionCube PHP 8.x Static Decompiler — PHP 8.1–8.4 Support Update
https://github.com/dawwinci/ioncube-php8-decompiler
  • Added PHP 8.1–8.4 support.
  • Added version-specific handler and interned-string tables.
  • Fixed ABI-specific integer assignment decoding.
  • Corrected Zend opcode ranges and opcode names.
  • Added automatic PHP ABI detection and DLL mismatch validation.
  • Improved loader constant extraction and documentation.


ionCube PHP 8.x Static Opcode Extraction — PHP 8.1–8.4 Support
I’ve published my latest reverse-engineering research and tools for statically analyzing ionCube-protected PHP applications targeting PHP 8.1 through PHP 8.4.

Technical article and tools:
https://www.amariei.org/ioncube-php8-static-decode.html


All times are GMT +8. The time now is 08:48.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX