Page 1 of 1

IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 12:26 am
by Zebuddi123
Hi to all

Came across this vid, showing pseudo code disassem in IDA pro (disassem a nasty trojan ) :twisted:

Looks pretty awesome, thought some might be interested.

Zebuddi. :)

http://www.ccso.com/files/hexraysdemo.swf

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 11:01 am
by srod
That is pretty cool. An awesome tool for those engaged in analyzing malware for sure.

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 2:54 pm
by jack
that's impressive, but having visited IDA's website I get the impression that the decompiler is sold as an add-on to IDA,
about 1100+ USD for IDA and about 2000+ USD for the decompiler that's over 3000 USD.
I would like to have it but it's just a bit expensive.

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 7:03 pm
by Zebuddi123
@Jack yes it is :cry: no limited demo either to have a play around with. It would have been a nice learning curve and surely there would be a big enough user base to bring the price down to something reasonable.

Is their anything comparable !?

Zebuddi. :)

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 7:30 pm
by PureGuy
There is a free version, isn't this enough?

https://www.hex-rays.com/products/ida/s ... ware.shtml

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 8:23 pm
by Zebuddi123
@PureGuy Already have it. Was mainly interested in the pseudo code decompiler :D

Zebuddi.

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 9:58 pm
by c4s
Zebuddi123 wrote:Is their anything comparable !?
Probably the only really free alternative is OllyDbg.

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Tue Feb 18, 2014 10:12 pm
by Zebuddi123
@c4s should have been clearer sorry, I was referring to the pseudo decompiler part! any disassembler which has this pseudo C type code decompiler. Would be a great tool for tinkering and learning.

The great thing about HEX-Rays pseudo decompiler it runs across Windows , Linux , OSX. I cant say i have ever come across this sort of thing in any disassembler i`ve looked at :cry:

Zebuddi. :)

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Wed Feb 19, 2014 5:49 pm
by Thorium
I am not very impressed. The video shows only very easy to analyse code for which you dont need the decompiler.
That said i know decompiler are a very complicated matter and i never had one that worked well.

I can see this saving some time on API heavy code. But it doesnt look like a well made decompiler.

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Wed Feb 19, 2014 7:05 pm
by Ramihyn_
jack wrote:that's impressive, but having visited IDA's website I get the impression that the decompiler is sold as an add-on to IDA,
about 1100+ USD for IDA and about 2000+ USD for the decompiler that's over 3000 USD.
I would like to have it but it's just a bit expensive.
I paid about 1900 € and had to prove that i am a commercial software developer to order it. They dont seem to sell that software to private people.

There isnt anything comparable or even better on the market.

Check the Zynamics add-on Binnavi : http://www.zynamics.com/binnavi.html

Re: IDA Pro PseudeoCode disassembly vid very interesting

Posted: Wed Feb 19, 2014 10:39 pm
by Joakim Christiansen