반응형
MUP 작업에 유용하게 사용되는(?) "Import REConstructor" 툴 새버전이 올라왔네요~
다음은 Tuts 4 You 에 올라온 내용입니다.
---------------------------------------------------------------------------------------
Features:
- Imports
- An original tree view
- 2 different methods to find original imports (by IAT and/or API calls)
- A *FULL* complete rebuilder (including a new fresh IAT)
- Loader
- An analyzer and ripper of redirected API code
- An injected loader code to support mix of imports + ripped code in a thunk
- A heuristic relocator
- Tracers
- 3 default tracers (disasm, hook & ring3) to find APIs in redirected code
- A plugin interface to develop your own tracers
- Misc
- Support ALL 32/64bits Windows (9x, ME, NT, 2k, XP and Vista32/64)
- An export renormalizer for Win9x/ME (ala Icedump)
- A built-in coloured disasm/hex-viewer to analyze the redirected code
- A built-in dumper
- Support almost all known antidump tricks
---------------------------------------------------------------------------------------
출처 : Tuts 4 You [ http://www.tuts4you.com ]
반응형
'Reverse Engineering > RCE Tools' 카테고리의 다른 글
XueTr 0.39 업데이트~ (2) | 2011.03.08 |
---|---|
Kernel Detective v1.4.1 (2) | 2010.12.19 |
XueTr 0.36 업데이트~ (2) | 2010.08.07 |
올리디버거~ 2.0 Final Release (2010.06.04) (0) | 2010.06.11 |
Kernel Detective v1.3.1 (8) | 2010.03.29 |