Skip to content

Instantly share code, notes, and snippets.

Embed
What would you like to do?
#!/usr/bin/python
import angr
import simuvex
class hooked_ptrace(simuvex.SimProcedure):
def run(self,a,b,c,d,e):
return self.state.se.Extract(31,0,e)
p = angr.Project('yolomolo_patch2')
#p.hook(0x400520,hooked_ptrace)
pg = p.factory.path_group()
pg.explore(find=0x405AD8,avoid=(0x405AF0,0x400520))
s = pg.found[0].state
f = open("found.bin","wb")
f.write(s.posix.dumps(0))
f.close()
print "ok"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
You can’t perform that action at this time.