首页
社区
课程
招聘
谁去EXETOOLS上把这个OD插件贴过来
发表于: 2005-4-19 11:47 3409

谁去EXETOOLS上把这个OD插件贴过来

2005-4-19 11:47
3409
地址http://www.exetools.com/forum/showthread.php?t=7363

One of the members on the Exetools, named Terrayoot, has created a plugin for Olly named "Olly Invisible Plugin" with some interesting code which seems to be developing into a very nice plugin indeed. You can check out his work and the informative discussion of debugger detection code in this thread:

http://www.exetools.com/forum/showthread.php?t=7363

It seems to be very effective, but is still under development, so I'm not going to attach a copy of it here yet.

There is also an interesting small piece of code by TQN, who is a member here, called "AntiDBG" which is useful for determing whether your Debugger is well hidden from most current methods of finding it. Since TQN is a member, I will allow him to decide whether or not to post his detector here also.

[课程]FART 脱壳王!加量不加价!FART作者讲授!

收藏
免费 0
支持
分享
最新回复 (9)
雪    币: 726
活跃值: (3319)
能力值: ( LV5,RANK:60 )
在线值:
发帖
回帖
粉丝
2
看了后面的人回复好象是对整个系统里面的进程都hook一下.
太变态了点吧.这样的工具装在系统里稳定性肯定是个问题
2005-4-19 18:21
0
雪    币: 93908
活跃值: (200199)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
3
最初由 oep1 发布
地址http://www.exetools.com/forum/showthread.php?t=7363


One of the members on the Exetools, named Terrayoot, has created a plugin for Olly named "Olly Invisible Plugin" with some interesting code which seems to be developing into a very nice plugin indeed. You can check out his work and the informative discussion of debugger detection code in this thread:

........


2005-4-19 20:16
0
雪    币: 383
活跃值: (786)
能力值: ( LV12,RANK:730 )
在线值:
发帖
回帖
粉丝
4
版主真疯狂...
2005-4-19 22:19
0
雪    币: 260
活跃值: (81)
能力值: ( LV4,RANK:50 )
在线值:
发帖
回帖
粉丝
5
有什么作用的插件?
2005-4-20 01:04
0
雪    币: 235
活跃值: (160)
能力值: ( LV9,RANK:210 )
在线值:
发帖
回帖
粉丝
6
yes teerayoot is very talented, valuable asset for us in ARTeam.
2005-4-20 08:56
0
雪    币: 255
活跃值: (207)
能力值: ( LV9,RANK:250 )
在线值:
发帖
回帖
粉丝
7
Crazy!
Up up up!
2005-4-20 09:05
0
雪    币: 202
活跃值: (22)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
8
够很!支持斑竹!
2005-4-20 11:25
0
雪    币: 427
活跃值: (412)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
9
隐藏进程的话有更好的工具,插件反而有兼容问题。
2005-4-20 11:54
0
雪    币: 258
活跃值: (230)
能力值: ( LV12,RANK:770 )
在线值:
发帖
回帖
粉丝
10
斑竹不BT谁还BT!
2005-4-20 15:45
0
游客
登录 | 注册 方可回帖
返回
//