티스토리 뷰
올리 디버거 플러그인으로 올리 디버거에서 안티 디버거 기능을 우회해서 분석을 할수있게 도와주는
플러그인 입니다 .
---[ PhantOm plugin 1.51 ]--------------------------------------------------
by Hellsp@wn & Archer & Olenevod.
// ********************************************************************* //
// 淃醴調瞬?蓴??壯增蒼筬陷?狀述?2009 莘哀? //
// 毘剪 釣泣?張灑蟻瀑?禎菴尊特?剪 壯?(Hellsp@wn, Archer, Olenevod) //
// ********************************************************************* //
| 厥外奄?音???
| Bronco, kioresk, RSI, lord_Phoenix, HoBleen, Grim Fandango,
| Guru.eXe, vad8787, PE_Kill, Executioner, ProTeuS.
-----------------------------------------------------------------------------
拳說妖 秧 仲終震 OllyDbg (筍嚴鎭 ?崖纖橓尊?.
淃溢侁奄 剪 衆抑策陷?靭桎哀?翟壯宗蓮杖:
// 崖纖橓?- extremehide.sys
[+] NtQueryInformationProcess.
[+] SetUnhandledExceptionFilter.
[+] OpenProcess.
[+] Invalid Handle.
[+] NtSetInformationThread.
[+] RDTSC.
[+] NtYieldExecution.
[+] NtQueryObject.
[+] NtQuerySystemInformation.
[+] Windows hide.
[+] GetProcessTimes.
[+] NtSetContextThread.
// 町說妖 - PhantOm.dll
[+] PEB BeingDebugged.
[+] PEB NtGlobalFlag.
[+] GetStartupInfo.
[+] Process Heaps.
[+] GetTickCount.
[+] OutputDebugString
[!] Protect DRx.
[!] Hide DRx.
[!] Fake Windows version.
[!] Custom Handler.
[+] BlockInput
燐?狀脣莘 - 1.51
[*] 희穽設音?狀述?蓀??夭禎倧佃.
燐?狀脣莘 - 1.50
[*] 宅綵袍?贍莘鳥嫉 禎懿特杖 狀靭尊?遵躁尿荻.
燐?狀脣莘 - 1.49
[*] 희穽設音?檉迭 FPU 蓀侁, 鎭渟綜 2 楫前翟?
[*] 宅綵袍?翟調灑迭凹 尿幽孼僥.
燐?狀脣莘 - 1.47
[*] 희穽設音?蓀??崖纖橓釣.
[*] 희穽設音?蓀??翟調灑叱?尿幽孼僥.
燐?狀脣莘 - 1.45
[*] 희穽設音?檉迭 FPU 蓀侁.
[*] 희穽設音狀 張仲鏑獪?蓀莘??崖纖橓釣.
[*] 쿡蓀瞬孼?翟調灑叱?尿幽孼僥, 禎懿妬諺紅 ?禎溢缸?締檣打?RaiseException.
[*] 쿡蓀瞬孼 述脣?妖切鏃惺僚 翟 翟調灑診牆紅 町說妖佃 尿幽孼僥.
[*] 희穽設音?蓀??NtSetInformationThread ?崖纖橓釣.
[*] 희穽設音?蓀??int 2d.
[*] 희穽設音?"single-step" 蓀?
[*] 淃鷹前潗?渟釣炡焌壯 全打 "custom handler exceptions".
[*] 희穽設音?蓀?c "protect DRx", 穽外賊陷??裔炡證循杖?壬櫛調 ?DRx 釣燼增終.
[*] 희穽設音?蓀?c BlockInput 壯 Windows 2000.
燐?狀脣莘 - 1.30
[*] 屢渟綜 裔莘依脣?適壯 ?穽淹凹?CPU, 溢悅?裔菴循潗 荀綵腸?
CAPTEXT ?PRETEXT, 禎-脹鏑妬杖?"PhantOm" ?"o_O".
[*] 희穽設音狀 張仲鏑獪?蓀莘??"custom handler exceptions".
[*] 희穽設音狀 張仲鏑獪?靭凝撓 蓀莘?
燐?狀脣莘 - 1.26
[*] 희穽設音?蓀??裔藎滄惟?崖纖橓調.
[*] 厥?盾誼特牆迹 全打?"custom handler exceptions" 調灑診
memory breakpoints on access, write 狀 張 修怏?調灑診潗
break-on-access.
[*] 희穽設音?蓀?穽?翟狀瞬孼僚 町說妖?
燐?狀脣莘 - 1.25
[*] 屢渟綜 溢悅?焌溢壬 裔菴循潗 夭 遵躁尿荻
HIDENAME ?RDTSCNAME.
[*] 희穽設音狀 張仲鏑獪?靭凝撓 蓀莘?
[*] 희穽設音?蓀??memory breakpoints.
燐?狀脣莘 - 1.20
[*] 쿡蓀瞬孼?櫛衰軫孼壯 翟調灑叱?尿幽孼僥 (C0000005).
[*] 쿡蓀瞬孼?全打 重孼?裔莘依盾?紳設狀莘 適壯.
[*] 쿡蓀瞬孼?櫛衰軫孼壯 翟調灑叱?尿幽孼僥 (OUTPUT_DEBUG_STRING_EVENT).
[*] int 3 壯 EP 惟拙焉帙?昶贍奄?, 嚴泣 盾誼特壯 前診狀盾?
壯 茁增諺狀?桎把?前診狀循.
[*] 쿡蓀瞬孼 渟釣騶城 BlockInput. (桎蟻惟 WinXP)
[*] 쿡蓀瞬孼?櫛衰軫孼壯 翟調灑叱?尿幽孼僥 (C0000094).
[*] 쿡蓀瞬孼?仲終震?剪 GetStartupInfo.
[*] 희穽設音?蓀??壯增尊隅閃?町說妖?
[*] 쿡蓀瞬孼?裔陷診 剪 翟壯宗蓮杖 崖纖橓尊?
燐?狀脣莘 - 1.15
[*] 희穽設音狀 張仲鏑獪?蓀莘?
燐?狀脣莘 - 1.10
[*] hook GetProcessTimes - 渟釣張晝??崖纖橓?
[*] hook NtSetContextThread - 渟釣張晝??崖纖橓?
[*] 희穽設音壯 廛矮魏 ?昶贍孼猥?"EP break".
[*] 희穽設音狀 張仲鏑獪?蓀莘? 竣裔牆紅 ?裔藎滄惟?壯增尊焉.
[*] ?ini 哀蓀瞬孼?全打 "DELTARDTSC", 禎譽鏑? 釣身泣尊循潗 調詣尊?RDTSC.
燐?狀脣莘 - 1.04
[*] 희穽設音?衰賊 穽?裔藎滄劉 崖纖橓調.
燐?狀脣莘 - 1.03
[*] 희穽設音?蓀??適壯麟.
燐?狀脣莘 - 1.01
[*] 희穽設音?蓀??崖纖橓釣.
燐?狀脣莘 - 1.00
[*] 쿡蓀瞬孼?裔陷診 適廛焉 OllyDbg.
[*] 屢渟綜 OllyDbg 檉迭嶢劃 張裔淳茁溢 剪 ImageBase.
燐?狀脣莘 - 0.60
[*] 쿡蓀瞬孼?櫛衰軫孼壯 翟調灑叱?尿幽孼僥 (C000001E, 80000001, C000001D).
[*] 쿡蓀瞬孼?昶贍孼猥 int3 ?EntryPoint.
[*] 희穽設音?蓀??GetTickCount.
[*] 쿡蓀瞬孼?靭桎液 陝震-鴨鎭攸??崖纖橓?
燐?狀脣莘 - 0.58
[*] 희穽設音?蓀??Hide from peb 壯 張惟桎終?茁增諺性.
燐?狀脣莘 - 0.57
[*] 희穽設音?蓀?穽?城診特 ?穽專嚴憎.
[*] 쿡蓀瞬孼?裔陷診 剪 GetProcessTimes.
[-] 帶調壯 全打 Fake Windows version (壯 荀諺).
燐?狀脣莘 - 0.55
[*] 宅綵袍壯 夭窓打 GetTickCount.
[*] 쿡蓀瞬孼?喜窓打 RDTSC.
[*] 尿穽設音?蓀??張 翟腸音杖諺 ServicePack.
[*] 袞日謫?全震麟預尊循?惟?
燐?狀脣莘 - 0.53
[*] 鎭渟綜 崖纖橓?壯軸怏秩 ?釣憎猝性.
[*] 哀蓀瞬孼?裔陷診 剪 NtSetInformationThread.
[*] 尿穽設音?蓀??Fake Windows version.
燐?狀脣莘 - 0.51
[*] 尿穽設音?蓀??GetTickCount
[*] 尿穽設音?蓀??檉迭諺 PEB'?
// 厥夭円陝?:
- 張 釣惟靭庄暢秩 裔艇仲城?灑音?賊狀?惟炡?OllyDbg, 穽?盾誼特牆迹 全打?
load driver.
- 嚴泣 述 禎靭?泣 壯增尊隅??町說妖? 狀 ?循?剪愉泓 魏惟?桎 牒雨 ?OllyDbg,
桎 壯哀 翟裔鎭蟻狀 渟釣裔艇增嶢?(Ctrl+F2) 穽謫調壹?
- 町說妖 述脣怏?剪乙哀杷酷 櫛翟緘杖 ?Log (Alt+L), 禎憙佃?穽?渟躁佃 裔艇仲?
釣惟靭庄暢秩 述增設嶢?蓴?全打??穽績壯泣預尊循潗 Log 壯 穽抑靭?廛矮適.
- 鎭增寮荻贍前?桎蟻惟 壯 Windows 2000 SP4, XP SP2.
- 穽?調灑鎭 ?町說妖佃, 釣惟靭庄暢秩 述幽嶢?穽謫調壹? 惟桎終?溢身 禎靭胞潗
裔藎滄劉 崖纖橓調 (잿震淳宗證, 牒儼脣薏).
- 穽?張惟拙焉帙迹 調灑鎭 町說妖?釣惟靭庄暢秩 禎穽翟荻城?壯 典嵬妖贍茴迹 OllyDbg,
悚?禎增典佺杖?町說妖荻.
// 樂梧 ?設桎尊?
www : hellspawn.nm.ru
mail: for.hellspawn@gmail.com
------------------------------------------------------------[ 06.01.2009 ]---
'Reversing tools > 올리 플러그인' 카테고리의 다른 글
advancedolly1.28 (0) | 2009.01.29 |
---|---|
X_CRYPTO v1.2 (0) | 2009.01.17 |
ODbgScript.1.66.3.VC6 (0) | 2009.01.11 |
DataRipper 1.3 (0) | 2008.11.21 |
MagicHideOllyDbg 1.00 (0) | 2008.11.21 |
HideOD v0.182 (0) | 2008.11.21 |
StrongOD v0.18 (0) | 2008.10.31 |
- Total
- Today
- Yesterday
- exeinfo pe
- ollydbg PLUGIN
- TTprotect
- ollydbg mup
- 리버스 엔지니어링
- vmprotect
- 패처
- PECompact
- crack
- 한글화
- 리버싱은 내운명
- DUP2
- Memory Hacking Software
- OllyScriptEditor
- StrongOD
- Reverse Engineering
- ASProtect 1.32 - 1.41
- ollydbg ScriptEditor
- ProtectionID
- OllyDbg Plugins
- 언패킹
- Unpacker
- ODbgScript
- OllyDbg
- Themida
- plugin
- 미니 노트북
- ollydbg scripts
- Unpacking
- 미친소 수입반대
일 | 월 | 화 | 수 | 목 | 금 | 토 |
---|---|---|---|---|---|---|
1 | 2 | 3 | 4 | 5 | 6 | 7 |
8 | 9 | 10 | 11 | 12 | 13 | 14 |
15 | 16 | 17 | 18 | 19 | 20 | 21 |
22 | 23 | 24 | 25 | 26 | 27 | 28 |
29 | 30 | 31 |