molebox 2.xx oep finder.txt

来自「700个脱壳脚本, 可以放在在OD的ollyscript Plugin中.」· 文本 代码 · 共 36 行

TXT
36
字号
/*
	============================
	.:[OllyScript Editor v2.0]:.
	      Author: GaBoR RES
	      Packer: Molebox 2.xx
	      Script for: Molebox 2.xx
	      Level: Simple
	      Date: Thursday, November 17, 2005
        Tested on: MoleBox Pro 2.2.4,2.3,2.5.7
	 ============================
						*/
var v
find eip,#60#
cmp $RESULT,eip
je pushad
bp $RESULT
run
bc $RESULT
pushad:
sto
mov v,esp
bphws v,"r"
run
bphwc v
find eip,#FF?0#
cmp $RESULT,eip
je end
bp $RESULT
run
bc $RESULT
end:
sti
cmt eip,"OEP found"
msg "Dump & fix the IAT"
ret

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?