anatolikalysch / vmattack Goto Github PK
View Code? Open in Web Editor NEWVMAttack PlugIn for IDA Pro
License: MIT License
VMAttack PlugIn for IDA Pro
License: MIT License
I installed python2.7.10 32bit and vmattack, but when I input the ida plugin folder,it prompts an error IOError: [Errno 2] No such file or directory: 'VMAttack_plugin_stub.py'
C:\Users\Administrator>python D:\IDAPro6.6\VMAttack\setup.py install
[] Starting dependency handling!
You are using pip version 7.0.1, however version 9.0.1 is available.
You should consider upgrading via the 'pip install --upgrade pip' command.
Requirement already satisfied (use --upgrade to upgrade): distorm3 in c:\python27\lib\site-packages
You are using pip version 7.0.1, however version 9.0.1 is available.
You should consider upgrading via the 'pip install --upgrade pip' command.
Requirement already satisfied (use --upgrade to upgrade): idacute in c:\python27\lib\site-packages
[] Setting up environment and installing Plugin.
Success: The specified value has been saved.
Please input full path to the IDA plugin folder (e.g. X:\IDA\plugins): D:\IDAPro6.6\plugins
Traceback (most recent call last):
File "D:\IDAPro6.6\VMAttack\setup.py", line 58, in
copyfile(stub_name, ida_dir+stub_name)
File "C:\Python27\Lib\shutil.py", line 82, in copyfile
with open(src, 'rb') as fsrc:
IOError: [Errno 2] No such file or directory: 'VMAttack_plugin_stub.py'
File "C:\Program Files\IDA Pro 7.4\plugins\VMAttack.py", line 2, in <module> from lib.Logging import get_log ImportError: No module named Logging
I tried even "pip install Logging", "pip install lib", and more, nothing on the internet.
any solution?
Dear developers,
Good morning. How are you?
I started to use this plugin and, at first time, everything seems having worked so well. However, today I had a small issue while opening a trace:
Python 2.7.6 (default, Nov 10 2013, 19:24:18) [MSC v.1500 32 bit (Intel)]
A Problem occured with the file selector dialog, first *.txt file in the current working directory was choosen!A Problem occured with the file selector dialog, first *.txt file in the current working directory was choosen!A Problem occured with the file selector dialog, first *.txt file in the current working directory was choosen!'NoneType' object is not iterable.
The image follows:
It is a small problem, but I thought that, eventually, you would like to know. In the other times, the dialog was perfectly shown.
For workarounding it, I copied the trace file to the same directory of the obfuscated code (and IDA database).
I hope you have a nice day and thank your for the attention.
Alexandre Borges.
Does the plug-in support the new version? IDA-7.0
D:\Software\IDAPortable\App\IDA\plugins\VMAttack_plugin_stub.py: [Error 193] %1 is not a valid Win32 application
Traceback (most recent call last):
File "D:\Software\IDAPortable\App\IDA\python\ida_idaapi.py", line 553, in IDAPython_ExecScript
execfile(script, g)
File "D:/Software/IDAPortable/App/IDA/plugins/VMAttack_plugin_stub.py", line 14, in
plugin = imp.load_source(name, plugin_path)
File "C:\Users\noobz\Desktop\VMAttack-master\VMAttack.py", line 9, in
from static.static_deobfuscate import *
File "C:\Users\noobz\Desktop\VMAttack-master\static\static_deobfuscate.py", line 8, in
from lib.Instruction import Instruction
File "C:\Users\noobz\Desktop\VMAttack-master\lib\Instruction.py", line 6, in
import distorm3
File "C:\Python27\lib\site-packages\distorm3_init_.py", line 57, in
_distorm = load_distorm()
File "C:\Python27\lib\site-packages\distorm3_init.py", line 54, in _load_distorm
return cdll.LoadLibrary(distorm_file)
File "C:\Python27\Lib\ctypes_init.py", line 444, in LoadLibrary
return self.dlltype(name)
File "C:\Python27\Lib\ctypes_init.py", line 366, in init
self._handle = _dlopen(self._name, mode)
WindowsError: [Error 193] %1 is not a valid Win32 application
VMAttack_plugin_stub.py: No module named cute
Traceback (most recent call last):
File "D:\Program Files (x86)\IDA 6.8\python\idaapi.py", line 601, in IDAPython_ExecScript
execfile(script, g)
File "D:/Program Files (x86)/IDA 6.8/plugins/VMAttack_plugin_stub.py", line 14, in
plugin = imp.load_source(name, plugin_path)
File "C:\Users\Administrator\Desktop\VMAttack-master\VMAttack.py", line 7, in
from dynamic.dynamic_deobfuscate import *
File "C:\Users\Administrator\Desktop\VMAttack-master\dynamic\dynamic_deobfuscate.py", line 7, in
from ui.UIManager import GradingViewer
File "C:\Users\Administrator\Desktop\VMAttack-master\ui\UIManager.py", line 9, in
from cute import QtGui, QtCore, QtWidgets, form_to_widget, use_qt5
ImportError: No module named cute
While Opening a .NET Application Or DLL In The IDA Pro It Give Me A Error.... Looks Like This...
The installer won't die, but theres an error message when trying to install distorm3. If you run pip by itself to install distorm3, it tells you something about not being able to find vcvarsall.bat. Turns out you need to install https://www.microsoft.com/en-us/download/details.aspx?id=44266 .
Worked fine for me using python 2.7.10 windows 7 x64.
Might want to put this in the install instructions.
Hi, are you planning to update the plugin for
python above 2.7
I tested ida 6.6, but it will say idaapi not has action_handler_t.
Thanks.
Can't figure out why.
DLL load failed: %1 is not a valid Win32 application.
line 601, in IDAPython_ExecScript
execfile(script, g)
then blallalb
Hi
I know that a previous issue on this has been raised (#5). For my case, I did install idacute using pip
Requirement already satisfied: idacute in C:\Python27\lib\site-packages (1.0.1)
However, when I launched IDA Pro, the plugin kept stating that it could not find the module. Is there any way to resolve this?
[EDIT 6 May 2020]
I managed to resolve the issue mentioned but now I am seeing another error
VMAttack_plugin_stub.py: Error loading the diStorm dynamic library (or cannot load library into process).
Traceback (most recent call last):
File "C:\Program Files (x86)\IDA 6.95\python\ida_idaapi.py", line 509, in IDAPython_ExecScript
execfile(script, g)
File "C:/Program Files (x86)/IDA 6.95/plugins/VMAttack_plugin_stub.py", line 14, in <module>
plugin = imp.load_source(__name__, plugin_path)
File "E:\vmattack\VMAttack.py", line 8, in <module>
from static.static_deobfuscate import *
File "E:\vmattack\static\static_deobfuscate.py", line 8, in <module>
from lib.Instruction import Instruction
File "E:\vmattack\lib\Instruction.py", line 6, in <module>
import distorm3
File "C:\Python27\lib\site-packages\distorm3\__init__.py", line 62, in <module>
_distorm = _load_distorm()
File "C:\Python27\lib\site-packages\distorm3\__init__.py", line 60, in _load_distorm
raise ImportError("Error loadi
Traceback (most recent call last):
File "<string>", line 1, in <module>
NameError: name 'print_banner' is not defined
I also tried the modification here (https://groups.google.com/forum/#!msg/rekall-discuss/AVRub4gk0-w/BHVhkc7qJvIJ) to modify distorm3's init.py but it still does not work
Any advice is appreciated.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.