吾爱破解 - 52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 35930|回复: 105
收起左侧

[OllyDbg 1.x Plugin] PhantOm V1.25 修正(OD隐藏插件)

    [复制链接]
Hmily 发表于 2008-4-5 18:19
[PhantOm plugin 1.25 ]
by Hellsp @ wn & Archer

/ / spring aggravation:
/ / IHA! PEOPLE WITH ALL DAY! SPRING WALKS! BEER begins! GULYAYTE DEVUSHKAMI X!
/ / ZHIVITE FULL LIFE!

| Privety fly to:
| Bronco, kioresk, RSI, lord_Phoenix, HoBleen, Grim Fandango,
| Guru.eXe, vad8787, PE_Kill.
————————————————– —————————

The plug to hide OllyDbg (with driver).
Helps detection of the following methods:

/ / driver - extremehide.sys

[+] NtQueryInformationProcess.
[+] SetUnhandledExceptionFilter.
[+] OpenProcess.
[+] Invalid Handle.
[+] NtSetInformationThread.
[+] RDTSC.
[+] NtYieldExecution.
[+] NtQueryObject.
[+] NtQuerySystemInformation.
[+] Windows hide.
[+] GetProcessTimes.
[+] NtSetContextThread.

/ / plug - PhantOm.dll

[+] PEB BeingDebugged.
[+] PEB NtGlobalFlag.
[+] GetStartupInfo.
[+] Process Heaps.
[+] GetTickCount.
[!] Protect DRx.
[!] Hide DRx.
[!] Fake Windows version.
[!] Custom Handler.
[+] BlockInput

What’s New - 1.25

You may now ask the very name services
HIDENAME and RDTSCNAME.

Some minor bugs.

Fixed bug with memory breakpoints.

What’s New - 1.20

Added own processing exceptions (C0000005).

Added the title change of the main window.

Added own processing exceptions (OUTPUT_DEBUG_STRING_EVENT).

int 3 at EP correctly removed if the stop
at the point of the system failed.

Added BlockInput interception. (WinXP only)

Added own processing exceptions (C0000094).

Added hide from GetStartupInfo.

Fixed bug with the settings plug.

Added protection from detection drivers.

What’s New - 1.15

Several bugs.

What’s New - 1.10

hook GetProcessTimes - moved to the driver.

hook NtSetContextThread - moved to the driver.

The bug and removing the “EP break.”

Several bugs related to downloading options.

In ini added “DELTARDTSC which will regulate the spread RDTSC.

What’s New - 1.04

Fixed bsod while loading drivers.

What’s New - 1.03

Fixed bug with windows.

What’s New - 1.01

Fixed bug in the driver.

What’s New - 1.00

Added protection OllyDbg windows.

Now OllyDbg patchitsya regardless of ImageBase.

What’s New - 0.60

Added own processing exceptions (C000001E, 80000001, C000001D).

Added removal int3 with EntryPoint.

Fixed bug with GetTickCount.

Added methods in anti-detekta driver.

What’s New - 0.58

Fixed bug with Hide from peb on some systems.

What’s New - 0.57

Fixed bug with the attachment to the process.

Added protection from GetProcessTimes.
[-] Removed option Fake Windows version (at the time).

What’s New - 0.55

Improved imulyatsiya GetTickCount.

Added emulation RDTSC.

Fixed bug with not zeroing ServicePack.

A bit optimized code.

What’s New - 0.53

Now the driver is in resources.

NtSetInformationThread added protection.

Fixed bug with Fake Windows version.

What’s New - 0.51

Fixed bug in the GetTickCount

Fixed bug with a patch PEB ‘and

/ / Notes:

– if you have changed the settings in the plug, but you open any file in OllyDbg,
necessarily have to restart it (Ctrl-F2) program.

– plug-in displays debug messages Log (Alt + L), so the first run
advised to put all the options and examine the Log for errors.

– tested only on Windows 2000 SP4, XP SP2.

– with the plug, it is recommended to turn off programs that can prevent
loading drivers (Antivirus, PC).

– incorrect in the work are encouraged to try to plug the “native” OllyDbg,
without extraneous plugins.

/ / Contact author:
www: hellspawn.nm.ru
mail: for.hellspawn @ gmail.com

PhantOm V1.25 修正.rar

43 KB, 下载次数: 1573, 下载积分: 吾爱币 -1 CB

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

mycsy 发表于 2008-4-5 20:26
FK 好强大的E文介绍啊
+
小子你E文都过级了 你不给翻译。。。。。。


幽灵插件 1.25 修正版
……
最后

–,如果您改变了在插件的设置,要打开在OllyDbg的所有文件,
necessarily必须重新开始(CtrlF2)。

–插入式显示调试留言记录(Alt + L),如此头次运行投入所有选择和审查错误的日志。

–插件在视窗2000 SP4, XP SP2仅测试了。
–,推荐关闭可能防止的插件的软件
(否则可能怀疑是病毒,PC(个人计算机))。

-----------------------------------------

乱啊 早个引擎翻译了下

更乱~~啊 啊 啊啊 啊 啊啊
头像被屏蔽
nmgame 发表于 2008-5-12 16:28
liangchuhua 发表于 2008-5-12 21:39
liangchuhua 发表于 2008-5-12 21:39
[s:17] [s:17] [s:17] [s:17] [s:17] [s:17]
黑夜无情 发表于 2008-6-22 14:18
怎么现在的工具.搞个介绍都用E文..
cxlvyy 发表于 2008-8-13 11:14
好东西呀
一定要看看
xnszwc 发表于 2008-8-13 14:34
谢谢!!!!!!!!!!!! [s:43]
qinhao8 发表于 2008-8-15 22:44
全世界都找不到 在这里找到了 感谢论坛的兄弟们 众人拾柴火焰高。
我心微笑 发表于 2008-9-3 17:39
幸亏 2 楼 翻译了一下,谢谢2楼
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则

返回列表

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-11-16 06:52

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表