Unpacking Armadillo 4.xx-4.66 Manually by ChOoKi
Astalavista Forum Index :: Unpacking :: Unpacking tutorials :: Unpacking Armadillo 4.xx-4.66 Manually by ChOoKi
Post new topic   This topic is locked: you cannot edit posts or make replies. View previous topic :: View next topic
Goto page 1, 2, 3, 4  Next
  Unpacking Armadillo 4.xx-4.66 Manually by ChOoKi
Author Message
ChOoKi
FOFF Team
FOFF Team


Offline
No Image
Joined: 13 Feb 2008
Posts: 316

Reply with quote
No Image
All the tuts I released (so far Smile ) on how to unpack Armadillo 4.xx-4.66 manually, further tuts will only be posted here.
Notes:
1-Tuts are best viewed using the free software SWF Player (set on Full Screen), get it from:
http://www.browsertools.net/downloads/SWFOpenerSetup.exe
2-If this is your first time unpacking, follow the tuts by the order of release (steps would be skipped as the tuts progress).
3-If you wish to mirror the download links, be my guest, you are only helping others in getting them. (just make sure you 'Hide' them or someone will remind you Smile ).

Use this download links:
Code:

Unpacking Armadillo 4.66 (Debug-Blocker)
http://rapidshare.com/files/110916044/UA466DB.zip.html

Unpacking Armadillo 4.66 (Standard)
http://rapidshare.com/files/111497669/UA466S.zip.html

Unpacking Armadillo 4.xx (Standard with Trial Keys)
http://rapidshare.com/files/111524034/UA466SK.zip.html

Unpacking Armadillo 4.66 (10JP Overlay @ +20h)
http://rapidshare.com/files/112120064/UA46610JPO_20h.zip.html

Unpacking Armadillo 4.66 (10JP Overlay Hidden)
http://rapidshare.com/files/112126723/UA46610JPOH.zip.html

Unpacking Armadillo 5.xx (Debug-Blocker + new Overlay signature)
http://rapidshare.com/files/112605116/UA5xxDBO.zip.html

Armadillo & Flash Games (Overlays)
http://rapidshare.com/files/115515392/AWFG_O.zip.html

Unpacking Armadillo 4.66 With Overlays using dilloDIE in Win2000
http://rapidshare.com/files/115516536/UA466OD16.zip.html

Armadillo & Ovelays - mdmwrdata123456789testx (PEiD)
http://rapidshare.com/files/119037242/E01.zip.html

Armadillo & Ovelays - wwwwI_G (PEiD)
http://rapidshare.com/files/119037838/E02.zip.html

Armadillo & Ovelays - [ZIP SFX] (PEiD)
http://rapidshare.com/files/119038339/E03.zip.html

Armadillo & Ovelays - 5A5A74DFC50229B2 (PEiD)
http://rapidshare.com/files/129233180/E04.zip.html

Armadillo & Ovelays - mdmwrdata123456789testx (Hidden@20h)
http://rapidshare.com/files/119039119/H01.zip.html

Armadillo & Ovelays - mdmwrdata123456789testx (Hidden)
http://rapidshare.com/files/119040405/H02.zip.html

Armadillo & Ovelays - FWS (Hidden@20h)
http://rapidshare.com/files/119041062/H03.zip.html

Armadillo & Ovelays - FWS (Hidden)
http://rapidshare.com/files/119042025/H04.zip.html

Armadillo & Ovelays - CWS (Hidden@20h)
http://rapidshare.com/files/119042910/H05.zip.html

Armadillo & Ovelays - CWS (Hidden)
http://rapidshare.com/files/119043671/H06.zip.html

Armadillo & Ovelays - Hex=1409134949130914 (Hidden@20h)
http://rapidshare.com/files/119044895/H07.zip.html

Armadillo & Ovelays - SWFKit (Hidden@20h)
http://rapidshare.com/files/119045672/H08.zip.html

Armadillo & Ovelays - FlashJester (Hidden@20h)
http://rapidshare.com/files/119047144/H09.zip.html

Armadillo & Ovelays - 10JP (Hidden) + DCR
http://rapidshare.com/files/119047797/H10.zip.html

A recent question by a fellow member made me post back 4 older tuts that I had removed from this list for having a spelling error at the title:
mdmrwdata... instead of the correct mdmwrdata... So watch out for that.!
All steps are included from start to finish.
http://rapidshare.com/files/113425238/UA466OA.zip.html
http://rapidshare.com/files/113437272/UA466OB.zip.html 
http://rapidshare.com/files/113495652/UA466OC.zip.html
http://rapidshare.com/files/113922471/UA466OD.zip.html

3 more tuts, complete form start to end on games (with overlays) been asked about recently:
http://rapidshare.com/files/129035101/UA466Amazon.zip.html
http://rapidshare.com/files/129228003/UA466ThreeStooges.zip.html
http://rapidshare.com/files/232511496/UA466UPXOS.zip.html *

A new tutorial on Unpacking Armadillo 5.02 Standard or Minimum (no Overlay):
http://rapidshare.com/files/232547177/UA502.zip.html *

---- Unpacking Armadillo v6.xx Manually -----

NOTE: PhantOm Plugin needed, get it from:
http://www.tuts4you.com/download.php?view.1276

1) Unpacking Armadillo v6.xx Standard - RegCompact
http://www.2shared.com/file/5264560/64abb611/UA6SRCP.html *

2) Unpacking Armadillo v6.xx Standard - iWin Games
http://www.2shared.com/file/5264360/6026caa3/UA6SI.html *

3) Unpacking Armadillo v6.xx Debug-Blocker+Nanomites - Pogo Games
http://www.2shared.com/file/5264187/6345a6e0/UA6DBNP.html *

(*) = Updated Link


- Feed back is appreciated.
- Thanks in advance for letting me know about any dead links


Last edited by ChOoKi on Fri May 15, 2009 5:05 am; edited 15 times in total
View user's profile Send private message
PostDate Posted:Sun May 04, 2008 5:08 am
Thanks: 0Thanked 98 Times In 59 Posts

Author Message
LCF-AT
Special Member
Special Member


Offline
No Image
Joined: 17 Jan 2008
Posts: 205
Location: Chateau-Saint-Martin

Reply with quote
No Image
Hello ChOoKi,

very nice to see your armadillo unpack collection in a row.
Thanks for this and keep going. Smile

greetz
View user's profile Send private message
PostDate Posted:Mon May 05, 2008 3:20 pm
Thanks: 0Thanked 44 Times In 29 Posts

Author Message
SerialKiller
FOFF Team
FOFF Team


Offline
No Image
Joined: 30 Apr 2007
Posts: 1324
Location: RETIRED

Reply with quote
No Image
Hey ChOoKi,

nice series have you started, keep going
and tnx for share.

SK

_________________
RETIRED


In relation to each action stands a reaction.
(Sir Isaac Newton)
"I don't know what I am doing, but I am sure I am having fun!"
I ignore every crack request in pm
View user's profile Send private message
PostDate Posted:Mon May 05, 2008 4:08 pm
Thanks: 3Thanked 260 Times In 78 Posts

Author Message
venom-rx
Special Member
Special Member


Offline
No Image
Joined: 10 Sep 2007
Posts: 102
Location: Anywhere In Mindanao

Reply with quote
No Image
woooh nice sharing bro... Happy
View user's profile Send private message
PostDate Posted:Mon May 12, 2008 4:22 am
Thanks: 41Thanked 4 Times In 4 Posts

  :(
Author Message
Lunitary
Newbie
Newbie


Offline
No Image
Joined: 14 May 2008
Posts: 7

Reply with quote
No Image
Hi, I have a little problem Sad.

I have downloaded Ollydbg V1.10 to do first tutorial, but when it says "Pluggins", in my program I see 1. Booksmarks 2. Command Line and in tutorial I can see Olly Advanced, Analyzethis, Asm2Clipboard... etc. What can I do? I am noobie in cracking. Thanks in advance.
View user's profile Send private message
PostDate Posted:Mon May 19, 2008 1:05 pm
Thanks: 0Thanked 0 Times In 0 Posts

Author Message
herr-master
Super Member
Super Member


Offline
No Image
Joined: 02 Jul 2007
Posts: 547

Reply with quote
No Image
go to
Use this download links:
Code:
www.tuts4you.com\download.php
and search under olly dbg plugins for the plugins you need

_________________
I will not crack request per pm!
thx @izzad95 for the sig!
View user's profile Send private message
PostDate Posted:Mon May 19, 2008 3:42 pm
Thanks: 19Thanked 128 Times In 86 Posts

Author Message
Zeroed
Good Member
Good Member


Offline
No Image
Joined: 24 Oct 2007
Posts: 51

Reply with quote
No Image
awesome possum, most helpful
View user's profile Send private message Visit poster's website
PostDate Posted:Thu May 22, 2008 8:59 pm
Thanks: 12Thanked 4 Times In 1 Posts

Author Message
andria345
Good Member
Good Member


Offline
No Image
Joined: 31 Mar 2008
Posts: 57
Location: in the BEST forum ever

Reply with quote
No Image
thanks chooki. Very Happy

_________________
I am a true fan of chooki
View user's profile Send private message
PostDate Posted:Fri May 23, 2008 11:34 pm
Thanks: 27Thanked 25 Times In 2 Posts

Author Message
Mr.BLaCkViRuS
Newbie
Newbie


Offline
No Image
Joined: 29 Apr 2008
Posts: 12

Reply with quote
No Image
Thank you very much ChOoKi
View user's profile Send private message
PostDate Posted:Sun Jun 01, 2008 10:36 am
Thanks: 0Thanked 0 Times In 0 Posts

Author Message
arnavch
Newbie
Newbie


Offline
No Image
Joined: 07 Dec 2007
Posts: 13

Reply with quote
No Image
hi i ahve a problem

the first tut(for DB)
it says we break once and nnote the mutexname value.

hoew do we break at that stage?

sorry if the question is silly but i am a total noob.
View user's profile Send private message
PostDate Posted:Tue Jun 03, 2008 10:16 pm
Thanks: 0Thanked 0 Times In 0 Posts

Author Message
ChOoKi
FOFF Team
FOFF Team


Offline
No Image
Joined: 13 Feb 2008
Posts: 316

Reply with quote
No Image
Check the start of that tutorial on how to set all needed breakpoints in advance prior unpacking a target.
Once you have all the breakpoints set in place (Disabled), start by enabling (RET from OpenMutexA) breakpoint, then SHIFT+F9 and you will break at that RET.. and so on..
View user's profile Send private message
PostDate Posted:Wed Jun 04, 2008 1:31 am
Thanks: 0Thanked 98 Times In 59 Posts

Author Message
Zeroed
Good Member
Good Member


Offline
No Image
Joined: 24 Oct 2007
Posts: 51

Reply with quote
No Image
Hi ChOoKi... I started watching your series and have right away become confused at what's happening in the video. There's a lot of decision making that goes unexplained and you totally loose me after a few minutes. I'm suggesting your tuts are bad - FAR from it - but I'm just wondering if you maybe have a written follow-along component that takes time to explain everything you do? What the options are, why you're setting them, backgrounder info on the WinAPI funcs you BP and why you're selecting those particular BP's.

Also, do you have a flash tut for an intro to Olly? And possibly one on Armadillo itself (just background info, some history, what it is, who likely uses it, etc. etc.)... just a few minutes of discussion on each would be great.

If you have "transcripts" (or could make them) for your videos, I would be than happy to do the voice overs and host the videos on my own site. I'd love to help out and it would give me the chance to better absorb and comment on the material.
View user's profile Send private message Visit poster's website
PostDate Posted:Wed Jun 04, 2008 2:06 pm
Thanks: 12Thanked 4 Times In 1 Posts

Author Message
ChOoKi
FOFF Team
FOFF Team


Offline
No Image
Joined: 13 Feb 2008
Posts: 316

Reply with quote
No Image
Dear Zeroed,
These tutorials build on each other in the order you see, you just have to start from the beginning..
The early tutorials show how and why BPs are selected and used in step-by-step commentary. As the tutorials progress & to keep'em short and to the point, earlier steps in unpacking are skipped (.... up to testing the fixed dump). Let me know if that was helpful..


Last edited by ChOoKi on Thu Jun 05, 2008 12:27 am; edited 1 time in total
View user's profile Send private message
PostDate Posted:Wed Jun 04, 2008 7:56 pm
Thanks: 0Thanked 98 Times In 59 Posts

Author Message
Zeroed
Good Member
Good Member


Offline
No Image
Joined: 24 Oct 2007
Posts: 51

Reply with quote
No Image
That's strange. I thought I had followed the tuts, as per your original instructions, according to the order of the release. Is that not simply from the top to the bottom of the list?

Also, am I to understand that you've got voice overlay in the videos? I didn't hear anything while listening... just saw the popup bubbles with an occasional comment...
View user's profile Send private message Visit poster's website
PostDate Posted:Wed Jun 04, 2008 9:07 pm
Thanks: 12Thanked 4 Times In 1 Posts

Author Message
ChOoKi
FOFF Team
FOFF Team


Offline
No Image
Joined: 13 Feb 2008
Posts: 316

Reply with quote
No Image
Dear arnavch:

Download PEiD 0.94 from:
Use this download links:
Code:
http://www.peid.info/files/PEiD-0.94-20060510.zip

Download "Extract Overlay" plugin from:
Use this download links:
Code:
http://www.peid.info/BobSoft/Plugins/ExtOverlay.zip

Place the "Extract Overlay" plugin in PEiD's "plugins" folder. Now, drag the Protected game file into PEiD's window & use the plugin to extract the overlay just like in the tutorial. Use WinHex (or any hex editor) to re-attach the overlay to the end of your dump file. Save the new file & test it.
View user's profile Send private message
PostDate Posted:Thu Jul 03, 2008 4:11 pm
Thanks: 0Thanked 98 Times In 59 Posts

Display posts from previous:   
Post new topic   This topic is locked: you cannot edit posts or make replies.    Page 1 of 4 All times are GMT
Goto page 1, 2, 3, 4  Next

Back to top


 
Astalavista Forum Index :: Unpacking :: Unpacking tutorials :: Unpacking Armadillo 4.xx-4.66 Manually by ChOoKi



Search This Topic:
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by Astalavista.MS Team © 2004
Image Here Image Here Image Here