Live Stream VOD: Dumpulator vs. Guloader VEH Obfuscation (Patreon)
Published:
2023-01-26 19:17:48
Imported:
2023-09
Content
In this twitch stream we take another look at Guloader's VEH obfuscation using Dumpulator. With Dumpulator we are able to bypass the obfuscation to extract the encrypted strings, as well as create a simple instruction color trace in IDA to identify the program flow.
Sample
E3A8356689B97653261EA6B75CA911BC65F523025F15649E87B1AEF0071AE107