Flag: Tornado! Hurricane!

Blogs >> takerZ's Blog

Created: Wednesday, December 28 2011 13:01.03 CST  
Printer Friendly ...
Ariadne framework and deobfuscator
Author: takerZ # Views: 1732

Recently have stumbled across this one:
http://ariadne.group-ib.ru/

The info from site says the following:

Ariadne is a framework for everyone involved in reverse engineering and related tasks (virus analysis, software protection and its analysis, forensics, and so on). Developing the code which solves tedious routine tasks could take up to 80% of the project time! Moreover there is a risk to make one or more of the typical mistakes while writing this code. Fixing of these bugs could be a long and unpleasant process. Ariadne will help a reverse engineer to save his own time and creative potential for the truly innovative tasks!
Ariadne deobfuscation technology was initially developed for the practical usage on the ordinary computers. It is not so resource-demanding but provides acceptable deobfuscation quality. AIR Wave Deobfuscation Technology is not based on patterns or signatures. It’s a generic technology and not something tailored to a certain obfuscator. Moreover, it is always possible to use the Ariadne API to improve our deobfuscation techniques or adjust them for a certain obfuscation type.

http://www.youtube.com/watch?v=LXsf4Eg-hxY


I stopped believing in miracles related to generic deobfuscation for long time ago, but this just looks like a jackpot.




Add New Comment
Comment:









There are 29,898 total registered users.


Recently Created Topics
Decompiling raw bina...
May/22
Incorrect bitness wh...
May/20
PaiMei stalker modul...
May/19
Attach to program us...
May/13
IDA PRO how to make ...
May/12
FACT: OpenRCE is dead.
May/08
Int 3 anti debug?
May/05
help needed - Beginn...
May/03
Attaching IDA Pro to...
Apr/27
File type
Apr/21


Recent Forum Posts
Ollydbg 2.0 - Plugin...
openrce...
IDA PRO how to make ...
codeinject
FACT: OpenRCE is dead.
codeinject
IDA Resource Viewer ...
r2x64
FACT: OpenRCE is dead.
djnemo
FACT: OpenRCE is dead.
codeinject
FACT: OpenRCE is dead.
pedram
help needed - Beginn...
araujo
Attaching IDA Pro to...
codeinject
Int 3 anti debug?
codeinject


Recent Blog Entries
lowpriority
Apr/13
OllyMigrate Plugin for Olly...

everdox
Mar/08
2 anti-trace mechanisms spe...

everdox
Mar/07
Advanced debugging techniques

everdox
Mar/06
Branch tracing and LBR acce...

everdox
Mar/05
Using pre-paged in virtual ...

More ...


Recent Blog Comments
clarisonic on:
Apr/03
New version of Ollydbg!

clarisonic on:
Apr/03
New version of Ollydbg!

trackerx90 on:
Mar/04
SuppressDebugMsg As Anti-De...

coachfactory on:
Feb/25
Portable Executable Format ...

coachfactory on:
Feb/25
A new Anti-Olly trick.

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit