Tuesday, March 25, 2014

Reverse Code Engineering VMWare Image

This image includes all the tools that you need to reserve engineer Malware.

jWQCPsHltHUkR_e.jpg jbkU0hcN38QxJ4_e.jpg

It includes about ~300+ tools/programs.
In size around 800 - 1500mb. Some are still zip/rar or 7z compressed.

Here a collection of: Unpackers, Debuggers, patchers, etc
http://www.exetools.com/unpackers.htm

Windows XP PRO SP3 PE x86)
Size: 1.73GB Compressed (Uncompressed size is 3.43GB)
SHA1 part 1: 8bb20534ab2df28eefe4003364f09e4c522b06b3
SHA1 part 2: 48f96ba87ae11e2f3d70a248d841bf94ac460243
VMWare compatibility: Workstation 9.0 (ESX Server)
Image version: 1.1

Updates, added or improvements on content and/or settings:
  • IDA 6.1 x86 & x64 added
  • Newest upx added
  • A few setup unpackers added
  • 100+ Ollydbg plugins  added
  • Explorer on default location again(not on top anymore) changed
  • IE 8, Flash, Adobe reader added lastest versions as of today added
  • Tutorial/paper database updated
  • VMware RAM increased from 512mb to 1024mb changed
Windows 7 ULT SP1 PE x86)
Size: 2.21GB Compressed (Uncompressed size is 4.70GB)
SHA1 part1: c3d6b3e04007b364eef67fdbdfbd4ca26d8a5d9a
SHA1 part2: 2127b19c483b0964347d9d97809ff1828787ba76
SHA1 part3: 8f288f1a3ffe5f7aad62077ab710d422a30bf3d0
VMWare compatibility: Workstation 6.5-7.x (ESX Server)
Image version: 1.2

Updates, added or improvements on content and/or settings:
  • Nothing yet
Download links
Spoiler 

  1. XP
  2. 08y426QEAG^$#P'[s[2.m=-1@396ED$jdh23818jDh]]\'a[03lfds.z.042942
  3. https://drive.google.com/file/d/0B9CSGyTrkEvqVUpEUnhxcU1XbGc/
  4.  
  5. Win7
  6. =2345-;JADk45)l435.[\.fsxFDS423]\213053&&^523$@#%dgshJFD7757239
  7. https://drive.google.com/file/d/0B9CSGyTrkEvqR3B3OUJQUGZMUUE/

 
Warning: The VMWare image is configured to work only on a local network (host-only). It is not connected to the internet (NAT shared).
Because it is impossible for me to check and know if all those programs and tools are clean. Most of them 80% came from a trusted source. But a lot came from an unknown probably (not totally sure) un-trusted source. So please, i repeat please make sure if you use NAT to install a proxy server or vpn in it first! I have not yet installed anything in it, besides programs and tools that i trust. The image is clean as how it is now.. Please make use of snapshots so if something goes wrong you can revert back to the beginning(original state).

Credits:
Me for cooking it up together
Microsoft Windows XP Pro PE -> By tj007s13
Microsoft Windows 7 Ultimate x86 Lite v3 -> By nileshtambe
HackHound wallpaper by ka0z
All other credits to their respective owners e.g all tools and software that is included.
If i forgot to add credits please pm me and i'll add them.

- FAQ


Spoiler 

Q: Does this has warranties and support etc?
A: No it does not come with ANY warranties, i will only continue to update those images and fix issues and/or add new software. Nothing else.

Q: How can i run this image on other visualization software like M$ Virtual PC, VirtualBox etc?
A: Yes it will work, please click on the following links for more information; VirtualBoxVirtual PCQEMU

Q: Do i have the right to share this elsewhere? Like on another forum or website.
A: No you don't have unless you host the image yourself and give proper credits.

Q: Will you ever make a x64 version of those images?
A: Maybe i will in the future when i have the mood for it.

Q: I am a beginner where do i have to start?
A: I have added some tutorials and useful websites, you can go to tuts4you and learn some basics about the subject and start with it.

Q: Do i have to buy VMware or where can i download VMware 9.x Workstation?
A: No you don't have to download it you can use VMware player(free) or download this at your own risk, i'm not responsible(possibly not legal allowed in your country) link

Q: Where can I find a complete list of all the tools installed in those images?
A: Simply not because i'm too lazy to make one, just download it and see it for yourself. All the useful and most popular programs and tools are included.

Q: Do you accept donations?
A: Yes, only bitcoins. Address: 1CqpKC2isSPhreTquY7ekoYgzVhNn5fTXH

Q: Can i be a mirror(hoster) for your VMware images?
A: Yes that is possible, just shoot me a pm.

0 Comments:

Post a Comment