uTrace 一个简易的unicorn tracer,剪裁自项目。 效果如下 各列的含义: 当前处于ARM/THUMB,A指代ARM,T指代Thumb 虚拟地址 机器码 汇编指令 寄存器变化 内存读写 使用方法,创建unicorn实例后加上一句 uTrace.UnicornDebugger(mu) # example.py from unicorn import * from unicorn.arm_const import * import uTrace # code to be emulated THUMB_CODE = b"\x37\x00\xa0\xe3\x03\x10\x42\xe0" # mov r0, #0x37; sub r1, r2, r3 # memory address where emulation starts ADDRESS = 0x10000 # Initi