OllyDumpEx v1.60
本帖最后由 2lht_love 于 2017-9-23 12:49 编辑OllyDumpEx = OllyDump + PE Dumper – obsoleted + useful features
Features :
[*]Various debuggers supported
[*]Select to dump debugee exe, loaded dll or non-listed module
[*]Search PE File from memory
[*]Multiple Dump mode. Rebuild for typical PE dump, Binary for PE Carving
[*]PE32+ supported (Search and Binary Dump mode only available on 32bit debugger)
[*]Native 64bit process supported (IDA Pro, WinDbg and x64_dbg)
[*]Dump any address space as section even if not in original section header
[*]Add dummy section to keep PE format consistency
[*]Fix RVA in DataDirectory to follow ImageBase change
[*]Auto calculate many parameters (RawSize, RawOffset, VirtualOffset, …)
Recent Changes : 2017-09-19
[*]Add: ELF support
[*]Add: Standalone version
[*]Add: Support IDA Pro 64bit build plugin interface (7.0)
[*]Improve: Image Size editable in binary dump mode for overlay data
[*]Del: Drop old version of Immunity Debugger support (1.7x)
看不懂,还是要感谢楼主分享 谢谢分享,看看是什么 不会用,可惜了 脱壳用的,支持IDA 7.0了,赞! 谢谢分享,看看是什么 感谢楼主分享 脱壳用的,支持IDA 7.0了,赞! 感谢分析,找了很久终于找到了
页:
[1]
2