Home Artists Posts Import Register

Content

This is the second part of our series on reverse engineering the VM protection in VMZeus.

This is a grind stream where we work through each instruction handlers, reverse engineer the semantics of each instruction. At the end of the stream we have our first overview of the entire instruction set and we can see that despite the number of instructions the actual language is very simple and is not Turing complete. Stay tuned for the next stream where we begin to formalize the instructions and build a disassembler!

Sample

f792997cb36a477fa55102ad6b680c97e3517b2e63c83c802bf8d57ae9ed525e UnpacMe

Notes

Introduction To VM Protection - VMZeus

Files

Live Stream VOD: Breaking Zeus VM Part 2

Comments

No comments found for this post.