Exetools  

Go Back   Exetools > General > General Discussion

Notices

Reply
 
Thread Tools Display Modes
  #1  
Old 06-14-2026, 21:57
HexaPe HexaPe is offline
Guest
 
Join Date: Jun 2026
Posts: 1
Rept. Given: 0
Rept. Rcvd 0 Times in 0 Posts
Thanks Given: 0
Thanks Rcvd at 0 Times in 0 Posts
HexaPe Reputation: 0
Question Struggling

Hey everyone

Ive spent the last few weeks reading whatever I can find about unpacking specifically trying to wrap my head around how themida and vmp work

I’ve managed to get x64dbg and ida pro set up, and i've been playing around with some basic targets just to understand how a PE file is structured and how IAT redirection works but every time I touch something protected i feel like i'm way out of my depth

Any advice or a push in the right direction would be huge
Reply With Quote
  #2  
Old 06-15-2026, 01:08
Jupiter's Avatar
Jupiter Jupiter is offline
Lo*eXeTools*rd
 
Join Date: Jan 2005
Location: Moscow, Russia
Posts: 237
Rept. Given: 43
Rept. Rcvd 62 Times in 37 Posts
Thanks Given: 38
Thanks Rcvd at 192 Times in 58 Posts
Jupiter Reputation: 62
Lightbulb Increase complexity step by step

When playing chess against a bot such as Stockfish, you can select its strength level.

Using VMProtect after UPX is like starting to play chess at a difficult level.

I recommend increasing the complexity step by step.

Choose more well-known protectors with detailed research and tools.

For example, consider ASProtect or Armadillo. These protectors are well known in the research community and there are many tutorials and scripts available.

After mastering well-known protectors you can go deeper.
__________________
EnJoy!
Reply With Quote
  #3  
Old 06-15-2026, 20:30
wx69wx2023 wx69wx2023 is offline
Family
 
Join Date: Sep 2023
Posts: 323
Rept. Given: 49
Rept. Rcvd 59 Times in 34 Posts
Thanks Given: 596
Thanks Rcvd at 884 Times in 234 Posts
wx69wx2023 Reputation: 59
Haha , I also want to learn how to unpack ; I has collected a lot of ASProtect releases (version from 1.0 to 2.65) and upackers (e.g CASPR,DcomAS, stripper, ollydbg scripts).


https://mega.nz/file/5EQCxTqT#RvE9r6iws9d8cJgTXhD9hM3cQ0WKa7Cph1Kn9KPSfNM
Reply With Quote
  #4  
Old 06-16-2026, 04:50
Jupiter's Avatar
Jupiter Jupiter is offline
Lo*eXeTools*rd
 
Join Date: Jan 2005
Location: Moscow, Russia
Posts: 237
Rept. Given: 43
Rept. Rcvd 62 Times in 37 Posts
Thanks Given: 38
Thanks Rcvd at 192 Times in 58 Posts
Jupiter Reputation: 62
Arrow Archive passwords

Quote:
Originally Posted by wx69wx2023 View Post
I has collected a lot of ASProtect releases ...
Some files are password-protected. There is no password in the text files (you need WeChat etc.). I have access to these releases, so I don't need a password, but other members without WeChat will find this challenging.
__________________
EnJoy!
Reply With Quote
  #5  
Old 06-16-2026, 06:46
blue_devil's Avatar
blue_devil blue_devil is offline
Family
 
Join Date: Dec 2011
Location: Observable Universe
Posts: 544
Rept. Given: 110
Rept. Rcvd 73 Times in 46 Posts
Thanks Given: 692
Thanks Rcvd at 898 Times in 299 Posts
blue_devil Reputation: 73
Quote:
Originally Posted by wx69wx2023 View Post
Haha , I also want to learn how to unpack ; I has collected a lot of ASProtect releases (version from 1.0 to 2.65) and upackers (e.g CASPR,DcomAS, stripper, ollydbg scripts).


https://mega.nz/file/5EQCxTqT#RvE9r6iws9d8cJgTXhD9hM3cQ0WKa7Cph1Kn9KPSfNM
I cannot unarchive the files under "unpack" folder; this is the error:
Quote:
unzip stripper.207ht.zip
Archive: stripper.207ht.zip
End-of-central-directory signature not found. Either this file is not
a zipfile, or it constitutes one disk of a multi-part archive. In the
latter case the central directory and zipfile comment will be found on
the last disk(s) of this archive.
unzip: cannot find zipfile directory in one of stripper.207ht.zip or
stripper.207ht.zip.zip, and cannot find stripper.207ht.zip.ZIP, period.
Reply With Quote
  #6  
Old 06-16-2026, 10:15
wx69wx2023 wx69wx2023 is offline
Family
 
Join Date: Sep 2023
Posts: 323
Rept. Given: 49
Rept. Rcvd 59 Times in 34 Posts
Thanks Given: 596
Thanks Rcvd at 884 Times in 234 Posts
wx69wx2023 Reputation: 59
Quote:
Originally Posted by Jupiter View Post
Some files are password-protected. There is no password in the text files (you need WeChat etc.). I have access to these releases, so I don't need a password, but other members without WeChat will find this challenging.
Hi,thanks for your remind, I checked and it's true. Password: pediy.com


Quote:
Originally Posted by blue_devil View Post
I cannot unarchive the files under "unpack" folder; this is the error:
Hi,thanks for your remind, I checked and it's true. every file is actually a html file in unpack folder, The reason is that I triggered a cloudflare rule when I zip and download from my web site.

I upload again, you can try and check.

https://mega.nz/file/9AgyFAqb#w72AQEn3NyJVluVnJ82Omhq-ca10z9gDJAQcZpe4arI
Reply With Quote
The Following User Says Thank You to wx69wx2023 For This Useful Post:
niculaita (06-17-2026)
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



All times are GMT +8. The time now is 06:40.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )