s3team / VMHunt

172 stars 30 forks source link

example file #1

Open mrexodia opened 5 years ago

mrexodia commented 5 years ago

Hello,

Your paper seems interesting so I decided to try out this prototype on a VMProtect 3.0.9 sample. Out of the box things don't appear to work (which I didn't expect), but do you have some sample(s) that do fully work out of the box?

Best regards,

Duncan

s3team commented 4 years ago

Thanks for your interest. Dongpeng will take a look and get back to you.

From: Duncan Ogilvie notifications@github.com Sent: Tuesday, November 27, 2018 3:12 PM To: s3team/VMHunt VMHunt@noreply.github.com Cc: Subscribed subscribed@noreply.github.com Subject: [s3team/VMHunt] example file (#1)

Hello,

Your paper seems interesting so I decided to try out this prototype on a VMProtect 3.0.9 sample. Out of the box things don't appear to work (which I didn't expect), but do you have some sample(s) that do fully work out of the box?

Best regards,

Duncan

— You are receiving this because you are subscribed to this thread. Reply to this email directly, view it on GitHubhttps://github.com/s3team/VMHunt/issues/1, or mute the threadhttps://github.com/notifications/unsubscribe-auth/AMy9mEk6keNodQp1XyEqeHY6ot2n9bhxks5uzZyggaJpZM4Y2QKP.

dongpengxu commented 4 years ago

The heuristics in this demo may not work well on newer version of virtualizers. Unfortunately, I don not have a sample at hand now. You should be able to adjust the heuristics by checking the chkpush, chkpop, and other functions in slicer.cpp.