首页
社区
课程
招聘
[转帖]OllyExt 1.1 by Ferrit
2013-3-27 23:31 12853

[转帖]OllyExt 1.1 by Ferrit

2013-3-27 23:31
12853
OllyExt 1.1 by Ferrit
The main intention of this plugin is to provide the biggest anti-anti debugging features and bugfixes for Olly 2.xx. Updates will come...

VMProtect support!

The currently supported protections are the following:
- IsDebuggerPresent
- NtGlobalFlag
- HeapFlag
- ForceFlag
- CheckRemoteDebuggerPresent
- OutputDebugString
- CloseHandle
- SeDebugPrivilege
- BlockInput
- ProcessDebugFlags
- ProcessDebugObjectHandle
- TerminateProcess
- NtSetInformationThread
- NtQueryObject
- FindWindow
- NtOpenProcess
- Process32First
- Process32Next
- ParentProcess
- GetTickCount
- timeGetTime
- QueryPerformanceCounter
- ZwGetContextThread
- NtSetContextThread
- KdDebuggerNotPresent
- KdDebuggerEnabled
- NtSetDebugFilterState
- ProtectDRX
- HideDRX
- DbgPrompt

The currently supported bugfixes are the following:
- Caption change
- Kill Anti-Attach ( dll integrity check )

Requirements:
- Microsoft Visual C++ 2010 Redistributable Package (x86)
- On x64 platfoms the testsigning has to be turned on because of the protection driver
1. bcdedit -set testsigning on
2. Reboot windows

OS support:
- WinXP x32
- WinXP WoW64
- Win7 x32
- Win7 WoW64


[培训]《安卓高级研修班(网课)》月薪三万计划,掌握调试、分析还原ollvm、vmp的方法,定制art虚拟机自动化脱壳的方法

上传的附件:
收藏
点赞1
打赏
分享
最新回复 (12)
雪    币: 153
活跃值: (260)
能力值: ( LV5,RANK:60 )
在线值:
发帖
回帖
粉丝
hjbfa 1 2013-3-28 07:45
2
0
沙发啊 支持
雪    币: 339
活跃值: (133)
能力值: ( LV7,RANK:110 )
在线值:
发帖
回帖
粉丝
地狱怪客 2 2013-3-28 08:11
3
0
下载试试。。。
雪    币: 25
活跃值: (84)
能力值: ( LV8,RANK:120 )
在线值:
发帖
回帖
粉丝
tihty 2 2013-3-28 09:51
4
0
"for Olly 2.xx

OS support:
- WinXP x32
- WinXP WoW64
- Win7 x32
- Win7 WoW64"

very nice..
雪    币: 2863
活跃值: (1602)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
chixiaojie 2013-3-28 10:04
5
0
Win 7 x64 运行出错,提示:

Unable to start service,

File: OllyExtDriver.cpp Line: 111
雪    币: 8083
活跃值: (2346)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
speedboy 2013-3-28 10:42
6
0
下载试用……
雪    币: 226
活跃值: (330)
能力值: ( LV7,RANK:100 )
在线值:
发帖
回帖
粉丝
goldenegg 2 2013-3-28 10:52
7
0
要启用testsign并重启,说明里有。
不过,只要你还没有遇到那么BT的壳,可以不管这个提示。
没事就加个驱动也不好。
雪    币: 2863
活跃值: (1602)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
chixiaojie 2013-3-28 22:53
8
0
什么是 testsign?是软件,还是 dos 命令?

怎么开启?用软件开启,还是 dos 命令开启?

谢谢。
雪    币: 85199
活跃值: (198520)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
linhanshi 2013-4-13 14:13
9
0
OllyExt 1.2
上传的附件:
雪    币: 371
活跃值: (72)
能力值: ( LV5,RANK:60 )
在线值:
发帖
回帖
粉丝
学雄 1 2013-7-24 21:22
10
0
[ATTACH]OllyExt 1.22[/ATTACH]

The main intention of this plugin is to provide the biggest anti-anti debugging features and bugfixes for Olly 2.xx. Updates will come...

VMProtect support!

The currently supported protections are the following:
- IsDebuggerPresent
- NtGlobalFlag
- HeapFlag
- ForceFlag
- CheckRemoteDebuggerPresent
- OutputDebugString
- CloseHandle
- SeDebugPrivilege
- BlockInput
- ProcessDebugFlags
- ProcessDebugObjectHandle
- TerminateProcess
- NtSetInformationThread
- NtQueryObject
- FindWindow
- NtOpenProcess
- Process32First
- Process32Next
- ParentProcess
- GetTickCount
- timeGetTime
- QueryPerformanceCounter
- ZwGetContextThread
- NtSetContextThread
- KdDebuggerNotPresent
- KdDebuggerEnabled
- NtSetDebugFilterState
- ProtectDRX
- HideDRX
- DbgPrompt

The currently supported driver based protections are the following:
- RDTSC

The currently supported bugfixes are the following:
- Caption change
- Kill Anti-Attach ( dll integrity check )

Requirements:
- Microsoft Visual C++ 2010 Redistributable Package (x86)

OS support:
- WinXP x32
- WinXP WoW64 (LIMITED FEATURES)
- Win7 x32
- Win7 WoW64 (LIMITED FEATURES)

Limitations:
- Driver based protection works ONLY on x86 platform

If you have any problem just notify me.
Image        no image available
Filesize        149.31 kB
Date        Sunday 12 May 2013 - 11:23:15
上传的附件:
雪    币: 196
活跃值: (21)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
enjon 2013-10-13 21:28
11
0
谢谢谢谢,太辛苦楼主了。
雪    币: 85199
活跃值: (198520)
能力值: (RANK:10 )
在线值:
发帖
回帖
粉丝
linhanshi 2014-2-5 02:14
12
0
OllyExt 1.7
上传的附件:
雪    币: 2863
活跃值: (1602)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
chixiaojie 2014-2-5 23:12
13
0
已经 1.8 了。
游客
登录 | 注册 方可回帖
返回