Exetools

Exetools (https://forum.exetools.com/index.php)
-   Community Tools (https://forum.exetools.com/forumdisplay.php?f=47)
-   -   XVolkolak (https://forum.exetools.com/showthread.php?t=18734)

hors 04-01-2018 00:12

XVolkolak
 
Xvolkolak is an unpacker emulator.
Unlike programs of this type, it does not use DebugAPI and other features of the operating system. Everything is emulated. You can safely unpack malware for further investigation without the risk of damaging the system.
All machine instructions are not executed on a real processor, so unpacking occurs regardless of the processor type and the operating system.
It is possible to unpack 64 bit files on 32 operating systems.
This build emulates the processors intel x86 and AMD64.
It supports unpacking 32 and 64 bit Windows executable files. If there is community interest, it will be possible to unpack other executable files (ELF, MSDOS, Mach-O) and other processors.

Due to its capabilities, with the correct manual setting, the program engine can be used to unpack almost any packer / tread.
However, this version of the program works in a fully automatic mode and can only unpack simple non-commercial unpackers such as:

UPX
ASPack
NsPack
Mpress
MEW
(Win) Upack
FSG
and some others.

The version of the program with the possibility of unpacking commercial protectors (such as VMProtect, ASProtect and others) will not appear in the public domain for obvious reasons.

The program is absolutely free for non-commercial and commercial use.

This version is for Windows. If you need a build for Linux, please let me know with the exact name of the operating system (for example Ubuntu 17.10 64 bit). The version for Linux is completely identical to the version of Windows.

The program is still in alpha status, so I would be grateful for all the comments on the program, as well as for links to files with simple packers. First of all, packed samples of malicious programs are of interest. Address for communication horsicq [at] gmail.com.

Download
More info

bolo2002 04-02-2018 23:39

"The version of the program with the possibility of unpacking commercial protectors (such as VMProtect, ASProtect and others) will not appear in the public domain for obvious reasons."

i'm living for obvious reasons,if you have a version or know where to get it,let me know in private.

squareD 04-03-2018 00:58

Agree to bolo2002
I'm also interested in the non public version
You also can give me a point in PM

evlncrn8 04-03-2018 07:20

wow, ignorance is bliss eh ?
are you aware that hors is the actual author ? its stuff like this that really demotivates authors and destroys projects

bolo2002 04-05-2018 23:37

Quote:

Originally Posted by evlncrn8 (Post 112881)
wow, ignorance is bliss eh ?
are you aware that hors is the actual author ? its stuff like this that really demotivates authors and destroys projects

And then what?

did i say something against him?No.
did i share something exetools only outside?Never.
i just asked him if it want to share it in private that's all.
both posts reflect more than good knowledges in RE!
i don't know what's wrong in my reply.:mad:
he's the author,free to him to do what he want from that and i doubt it's something that demotivates author and destroys projects.

hors 05-30-2018 16:50

XVolkolak 0.18

Windows 7-10 Download
Windows XP Download
Linux Ubuntu 18.04 x64 Download
OSX Download

sendersu 05-30-2018 21:32

@hors
does it support previous Ubuntu LTS ed?
eg 14 or 16

hors 06-01-2018 02:01

Quote:

Originally Posted by sendersu (Post 113530)
@hors
does it support previous Ubuntu LTS ed?
eg 14 or 16

It should work on 14 and 16 too.

hors 07-12-2018 16:51

XVolkolak 0.21

Windows 7-10 Download
Windows XP Download
Linux Ubuntu 18.04 x64 Download
OSX Download

trickyboy 09-06-2018 13:37

Was there any body that got a private version? Please pm me, thank you.

bolo2002 09-06-2018 23:54

Quote:

Originally Posted by trickyboy (Post 114721)
Was there any body that got a private version? Please pm me, thank you.

I'm still waiting for a private version and keep it private.
you didn't seen my post above,it's bad to ask for it. :)

chants 09-07-2018 07:07

August 11, 2018 XVolkolak 0.22

Windows 7-10 Download
Windows XP Download
Linux Ubuntu 18.04 x64 Download
OSX Download

Credits of course go to hors

Megin 09-07-2018 08:42

"The version of the program with the possibility of unpacking commercial protectors (such as VMProtect, ASProtect and others) will not appear in the public domain for obvious reasons."

Does such a version actually exist in the first place?
Given the fact that VMProtect and other complex protectors have so many options available in their protectors, I seriously doubt whether any single tool by itself can unpack it completely.

Want to further confirm that you are not putting up the private version for sale, even to private researchers? I ask since sometimes research tools like these are made available to institutions and researchers, even if not released into the public domain.

Trit0n 09-09-2018 18:14

The author has never explicitly said that his Unpaker is capable of unpacking VMprotect.
(Is probably more wishful thinking)


All times are GMT +8. The time now is 09:47.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX