News | Debuggers | Disassemblers | Monitors/Tracers | Packers/Encryptors | Unpackers/Decryptors | Patchers | Tools | Links

EXECUTABLE
UNPACKERS/DECRYPTORS


DOS Unpackers/Decryptors

Anti Hacking Code Remover 1.32 ahcr132.rar
(14kb)
Universal unpacker for: Protect 4.0, 5.0...5.5/5.6, BWE 0.90, Crypt AntiTrace, UNP-DShield 4.10-4.12b, GA 1.0a/b, X-Tract Protection, HackStop 0.9x, 1.00..1.18,  AntiTrace [GENERIC],  NSP 1.00 Reg, NSP 0.001, RC 286, RC 386,  PKTiny 1.5x, 1.6x, Crypt/LightShow 1.15-1.21, DOP CryptEXE 1.0x, Predator Mut 1.1, Rand0m Crypt/Alec, TEU 1.7x, CrapStop, FSEE 0.4.
Author: Ralph Roth (ROSE)
http://come.to/rose_swe
RalphRoth@gmx.net
CUP386 v3.4 ucfcup34.zip
(50kb)
The ultimate executables unpacker. Unpacks DOS EXE, COM files packed via PkLite, Diet, Protect and ANY other. *Very* useful tool.
Author: SAGE
http://www.ucf2000.com
DOS32Unp v0.1c dos32unp.zip
(14kb)
DOS32 is a DOS-Extender by Adam Seychell with an ability of compressing executable files. This util can unpack them.
Author: Oleg Prokhorov
olegpro@mail.ru
EDump II edumpII.zip
(28kb)
EliCZ's Dumper II for DOS executables is able to:
  • use Windows specific breakpoints to dump protected programs
  • operate on ring0-level 
  • convert .COM to .EXE, sometimes .EXE to .COM
  • minimize DOS .EXE size, header, etc.
  • unpack any packed DOS executable
  • remove any runtime encryption

EDump is fast and very efficient.
Author: EliCZ
elicz@email.cz

PatchEDump.zip
[PatchEDump.zip - MISSING](1kb)
This patch updates EDump NT/2K drivers for use in various 2K builds. Update is needed because NTcall numbers are changing.
GTR 1.Df/Dt ucfgtr1d.zip
(26kb)
GTR unpacks PKlite 2.0, WWPack 3.05, LZEXE, HS 1.18/386, LSCrypt 1.21, ICE 1.0, ALEC 1.6, Protect! 6.0, DoPCrypt 1.04, ExeCode 1.00, RCC 1.13h/m, ELITE 2.0, Diet 1.45f, AXE 2.0, ProtEXE 3.10, TINYPROG 3.9, RJCRUSH 1.10, RCC386 0.51, RCRYPT 0.91, SHRINK 1.0, GuardianAngel 1.0b, FDS-CP 0.4a, MESS 1.13b, PCRYPT 3.50, BITLOK 3.1, Crackstop 1.02b and many others.
Author: Hendrix
http://home.t-online.de/home/enoch
hendrix_@gmx.net
HackStop Unpacker 1.0 unhs.zip
(12kb)
This HackStop Unpacker is able to unpack all .COM & .EXE files protected with HackStop 1.17, 1.18, 1.19 and .EXE files with and without encrypted relocations or image encryption.
Author: Christoph Gabler
http://www.thepentagon.com/trap
ChristophG1@Hotmail.Com
iCEuNP v0.3.4 i034.zip
(38kb)
Intel Complex Emulator exe/com UNPacker. Sources included.
Author: JauMing Tseng
http://members.xoom.com/jauming/
jauming@yahoo.com
LADO's Tracer 1.0 (LTR) ltr10.zip
(17kb)
DOS based generic real mode unpacker. Tesed with UpStop, Fse, IluCrypt, Trap, AdFlt2, Jmt-Cp, Scramble, Exeguard, Rcc II, Encom, GA, Xorer, HackStop, SuckStop, LamerStop, Cscrypt, Cry, Alec, Exel666, CrackStop, Cexec, Ciphator, Jmce, Mess, Encom, Pcrypt, Protexe, SnoopStop, Dcrexe, Mscc, Tcrypt, Safeexe, etc...
Author: A. Ladomerszky
http://www.extra.hu/lado or http://www.nexus.hu/lado/ (soon)
lado@freemail.c3.hu
PMWUNLIT v1.20 pmwun120.zip
(38kb)
Decompressor for PMODE/W compressed executables.
Author: David Lopez
david@jet.es
SDW386 1.78 unpacker unsdw386.zip
(11kb)
Unpacker for Shadow Com Crypter (SDW) 1.78 by MantiC0re. Sources included.
Author: Christoph Gabler
ChristophG1@Hotmail.com 
TCEC 3.55 unpacker untcec.zip
(10kb)
Unpacker for TCEC 3.55, TCEC 3.55b by The Cleric.
Author: Christoph Gabler
ChristophG1@Hotmail.com 
TEU V1.82e teu182.lzh
(33kb)
Universal DOS executables unpacker.
Author: JVP
http://members.xoom.com/jvp/
jvp@writeme.com
The CrackStop Remover 1.2 csr.zip
(14kb)
The CrackStop Remover is able to unpack nearly *every* single file protected with CrackStop, both registered and shareware version are handled. The unpacked file will be byte-by-byte 100% the same as the file was before protecting it with CrackStop, only when a regged version was unpacked there are a few more bytes than actually needed. The current version is now supports files protected with CS 1.03 update. Sources included.
Author: Christoph Gabler
http://www.thepentagon.com/trap
ChristophG1@Hotmail.Com
TRAP Remover detrap15.zip
(13kb)
This program allows you to automatically remove protector TRAP by Christoph Gabler from executable files. Current version was tested on files TRAPed using version up to 1.23.
Author: Vladimir Gneushev
VAGSoft@mail.ru
detrap15.zip
(5kb)
The same tool but for TRAP version 1.5.
UNP V4.11 Executable file expander unp411.zip
(35kb)
Uncompresses files compressed with DIET, EXEPACK, LZEXE, PKLITE and many other file compression utilities. UNP also allows you to convert files from COM to EXE and vice versa, optimize EXE headers, remove overlay data from EXE files and more.
Author: Ben Castricum
unp412b.zip
(22kb)
UNP V4.11 upgrade to V4.12.
UnPackStop 0.97 Remover deups97.zip
(3kb)
This little utilitie allows you to automatically remove protector UnPackStop v0.97 by Szaszi from executables files. It able to remove both shareware and registered version of UPStop.
Author: Vladimir Gneushev
VAGSoft@mail.ru
UnPaCKER PaCKaGE rel. 022 untiny.zip
(337kb)
Generic Unpacker Package. Support for: PKLite (Gen), TinyProg 3.0, 3.3, 3.5, 3.6, 3.8, 3.9, 4.0, Air-Protect, TinyProt, PKTiny 1.xx, AHCR, GENERIC COM Unpacker, TPack 0.50, N0Ps, Misha, Iceman, ABP-Prot, RC1, COM-Crypt, EXEProt, CryptCom, FXlock, CrackStop 1.0b, Mask, Guardian Angle, Rand0m/SP, WWPack, Sysnopsis, LzEXE, SuckStop, Protect 2.0-6.0, ...
Author: Ralph Roth (ROSE)
http://come.to/rose_swe
RalphRoth@gmx.net

 

Windows Unpackers/Decryptors

Anti-Aspack v0.2 tmgaspac.zip
(39kb)
This is a small Aspack unpacker. it currently works on files protected with Aspack v2. 11 only.. It works only under w9x.
Author: LuTiN NoIR
http://www.tmg.f2s.com/
Anti Aspr. v0.7 antiaspr.zip
(19kb)
Asprotect unpacker.
city_of_bitch@caramail.com
Author: LuTiN NoIR
Armadillo deprotector 1.1 armdep.zip
(208kb)
Unpacker for files protected by Armadillo up to version 1.90.
Author: tHE ANALYST
http://www.oldreverser.cjb.net
Armadillo Killer v1.1 armkiller.zip
(19kb)
Universal Unpacker for Armadillo 1.7x-1.8x
Author: ArmKiller
armkiller@mail.com
ASPack unpacker v1.0 unaspack.zip
(26kb)
Unpacker for ASPack 1.02b, 1.07b, 1.08.00/1/2/3. Full asm source included.
Author: bane
http://www.wuschel.demon.co.uk
dope@mailandnews.com
CASPR v0.940 caspr.zip
(65kb)
CASPR is a cool unpacker for ASProtect.
Author: SAC
http://SAC.home-page.org
webmaster@SAC.home-page.org
C.u.dilla r1 final cudilla.zip
(18kb)
C.u.Dilla r1 is a Safedisk/C-dilla unwrapper/decryptor.
Authors: r!SC & Duelist
http://csir.cjb.net, http://beam.to/risc, http://beam.to/evc
Daemon's PC Guard Decryptor v0.7 dpcgd.zip
(21kb)
PC Guard W32 Decryptor. Support: 2.10d, 3.00d, 3.02d, 3.03d.
Author: DAEMON
http://www.unpacking.org
DeShrink V1.6

dshrnk16.zip
(188kb)

DeShrink is a tool to unpack Files compressed with Shrinker done by Blink Inc. All versions of Shrinker are supported up to 3.4.
Author: [j0b]
http://members.xoom.com/j0b/
DeSoftSentry 0.5 desoft.zip
(59kb)
SoftSentry 3.0 unpacker.
Author: Cyber Daemon
http://www.unpacking.org
DeX v0.99 dex.zip
(167kb)
Decompressor for PeX v0.99.
Author: Chafe
chafe@gmx.net
Flu[X]'s Shrinker Version Detector V1.1.0 fluxshr1.zip
(135kb)
This is a simple little util to detect Shrinker V3.2, V3.3, and V3.4.
Author: Flu[X]
http://tuts99.cjb.net
pcflux@hotmail.com
IczDump 1.0 iczdump.zip
(84kb)

IczDump (Iczelion's PE Dumper) is yet another in-memory Portable Executable File dumper. However, it's different in subtle ways from other dumpers: it runs in the same process as the target because it's a DLL. Once the DLL is in a process, it has the same privilege as the the target. It can:

  • dump file structures: DOS & PE headers, sections, resources 

  • do custom dump: let you specify the address range you want to dump 

  • suspend-resume primary thread of the process 

  • edit the in-memory PE structures 

  • reload PE headers from the target 

  • display module list: list all modules in the process. You can load/unload modules. 

  • select target module to examine,dump via the module list 

  • search the target for import table 

  • search the target for thunk dwords (import function addresses) 

  • do Import Address Table (IAT) query

Author: Iczelion
http://win32asm.cjb.net
Iczelion@galaxycorp.com

Bye PE-Crypt v1.02 pc_xpecr.zip
(16kb)
PE-Crypt 1.02 decryptor by Iczelion & Plushmm.
Authors: Iczelion & Plushmm
plushmm@hotmail.com
NED v2.30 ned.zip
(9kb)
NED is a deshrinker for SHRINKER 3.xx compressed files (NE -Visual Basic 3.0).
Author: snajder
lsnajder@hotmail.com
PEunCompact v0.01 tmgpeunc.zip
(28kb)
This is an unpacker for programs packed by a program called PECompact. It has only been tried with programs compressed using PECompact v0.971b.
Author: Chafe
http://tmg.da.ru
tmg2k@gmx.net
ProcDump32 1.6.2 FINAL pdump32.zip
(162kb)
ProcDump is an universal unpacker for Win32 executables. It's a *must* for every reverse engenier. Features:
  • Dump any 32 bits running process/module.
  • Restore the Import table & PE header.
  • Reoptimize a PE file.
  • Unpack a given PE file using known strategy or using an universal analyzis.
  • Start & unpack a given PE file. With the help of script language, you can unpack in a few secs well-known packers and learn to ProcDump how to unpack the others.
  • Rebuild a dump made with SoftICE and dumper in a regular PE file.
  • Edit a given file PE header, kill some object physically.
  • Kill a running process.

Special support for NeoLite, PESHiELD, Shrinker 3.X, Wwpack32, Manolo, Petite, Vbox, Shrinker,  PEPack, UPX, Aspack, SoftSentry, PCShrink, PCGUARD, Sentinel, PKLiTE, CodeSafe.
Authors: G-RoM, Lorian, Stone
http://ProcDump32.cjb.net
g-rom@innocent.com, lorian@gmx.net, stone@miramax.cbs.dk

ProcessDumpNT v1.0 pdumpnt.zip
(8kb)
This utility will enumerate processes in modules under WindowsNT and allow the user to dump to disk and rebuild any loaded module.
Author: Jeremy Collake
http://pecompact.cjb.net
collake@charter.net
PETiTE 2.1/2.2 uNPACKER enlarger.zip
(35kb)
Author: r!sc
http://www.unpacking.org
PEUNLOCK-NT ucfpeunk.zip
(39kb)
PELOCK-NT decryptor. All known PELOCK-NT versions supported : v2.01, v2.02b, v2.03, v2.04. Source code included.
Author: xOANINO
QuickDump v1.0 qdump.zip
(32kb)
QuickDump is an easy to use memory dumper.
Author: defiler
http://www.execution.org
defiler@blizzard.st
rAD v0.6 rad.zip
(32kb)
rAD is a little asprotect decryptor/unpacker, been in development since the 29th september. It currently works on files protected with asprotect v1.1 only.
Author: r!sc
http://www.csir.cjb.net
Safedisc Annihilator Beta 1.2 sab_setup.zip
(1,47mb)
Safedisc Annihilator is a generic Safedisc crack. It will allow you to run the program without the original CD inserted.
Author: ArthaXerXes
http://www.altern.org/xerxes/
xerxes@altern.org
Stone's PE - ExeEncrypter 1.13 Remover stnpeer.zip
(8kb)
Asm source included.
Author: ANAKiN
http://members.xoom.com/MrANAKiN
anakin__@gmx.net
tEunlock V1.0 teunlockv1.zip
(18kb)
tElock unpacker. Supported versions - v0.41b, v0.41c, v0.42.
Authors: r!sc and DAEMON
tNO-Peunc v1.5 Beta 1 tnopeunc.zip
(14kb)
tNO-Peunc is an Unpacker for PE-Compacted files and will create 100 % working and "disassembleable" unpacked Versions of the packed PE-Files in its final Release.
Author: aK_
UnArmadillio 1.3 ucfua.zip
(71kb)
Un-Armadillio is a program used to unlock programs locked with Armadillo v1.81 and v1.82.
Author: therain
tr@ucf2000.com
UnArmadillio 1.4 ucfua14.zip[ucfua14.zip - MISSING]
(46kb)
Un-Armadillio 1.4 is a program used to unlock programs locked with Armadillo v1.83.
Author: therain
tr@ucf2000.com
UnAspack 1.0.9 2unaspack.zip
(73kb)
Another generic ASPack unpacker. ASPack up to 2.001 are supported.
Author: BiWeiGuo
bwg@kangxi.com.cn
unCodeCrypt v0.164b xoacdecr.zip
(61kb)
Decrypter for Codecrypt 0.164b + SOURCES.
Author: xOANINO
undbpe 1.2 undbpe12.zip
(2kb)
This is remover for dbpe 1.2.
Author: tender
undbpe v1.50 undbpe15.zip
(3kb)
Remover for dbpe (ding boy pe lock) v1.50.
Author: totnak
UNPCPECa tno_uppa.zip
(13kb)
UNPCPECa will decrypt any PE executable/dll which has been encryptedwith PCPEC "alpha - preview" or PCPECa for short.
Author: Prophecy [tNO '99]
UnPECompact 1.2 unpecompact.zip
(68kb)
UnPECompact is an Unpacker for exe files which have been compressed with
PECompact. It should unpack all PECompact versions.
Author: yoda
yoda_f2f@gmx.net
UnPEPack v1.0 unpepack.zip
(137kb)
UnPEPack is a unpacker for files compressed with PE-Pack.
Author: M.o.D.
MoD_f2f@gmx.net
UnPEProt v0.9 unpeprot.zip
(19kb)
PE Protect 0.9 unpacker.
Author: Lorian
lorian@gmx.net
UNPE-SHiELD v0.14 unpesh14.zip
(21kb)
UNPE-SHiELD is a program, which decrypts 32-bit Windows EXE files "protected" by PE-Shield. The version supported are the 0.1a, 0.1b, 0.1c and 0.1d.
Author: G-RoM
g-rom@innocent.com
unPES 2.0 unpes.zip
(92kb)
This is unpacker for protector called PESHiELD versions 0.2b and 0.2b2. The files that are encrypted by these versions of the protector are automaticaly decrypted.
Author: Unknown One
unknone@mail.com
UnPeShield unpeshield.zip
(8kb)
The PEShield 0.25 Unpacker. This unpacker is written in win32asm, for use with PEShield version 0.25 only.
Author: Iczelion
Iczelion@galaxycorp.com
unSafedisc v1.5.5 unsafedisc.zip
(13kb)
Safedisc unwrapper.
Author: r!sc
http://csir.cjb.net
UnSecurom 1.0 unsecurom.zip
(52kb)
UnSecurom 1.0 can remove the Securom protection in every game launch one or two years ago protected with this system.
Authors: Gadix, SkUaTeR & Ni2
http://wkt.tsx.org
UnShrinker shrunp.zip
(36kb)
Another unpacker for Shrinker 3.2-3.3.
Author: Andrew Shipinsky
UnVGCrypt v0.1 unvgcrypt.zip
(19kb)
UnVGCrypt is a little VGCrypt v0.75 decryptor.
Author: LuTiN NoIR
VBOLock unprotector e_vbolockreadnfo.zip[e_vbolockreadnfo.zip - MISSING]
(327kb)
Unprotector for executables protected by VBOLock.
Author: fREaKaZoiD
http://www.the-eminence.org
freakazoid70@gmx.de
VBOX Unwrapper vboxunwrapper.zip
(244kb)
Authors: MAK & EinZtein
MKEZ@ucf2000.com
Win32Intro v0.71 w32intro.zip
(27kb)
Win32Intro is a generic executable unpacker/dumper. It can unpack compacted or encrypted Win32 executable files without knowledge about their compressor and without any need of debugger. It also unpack files that includes some anti-debugging traps (for instance, use of int 03).
Author: Vitaly Evseenko
http://madmat.hypermart.net
protectit@cryogen.com

(c) 1999, 2000 by Player