能力值:
(RANK:10 )
|
-
-
2 楼
Whats new: - 1.20
Added own handling of exception (C0000005). Added option for the title change of the main window. Added own handling of exception (OUTPUT_DEBUG_STRING_EVENT). int 3 at EP correctly removed. Added interception of BlockInput. (WinXP only) Added own handling of exception (C0000094). Added hiding of GetStartupInfo. Fixed bug with changing the options of the plugin. Added more defense of the driver from detection.
// driver - extremehide.sys
[+] NtQueryInformationProcess.
[+] SetUnhandledExceptionFilter.
[+] OpenProcess.
[+] Invalid Handle.
[+] NtSetInformationThread.
[+] RDTSC.
[+] NtYieldExecution.
[+] NtQueryObject.
[+] NtQuerySystemInformation.
[+] Windows hide.
[+] GetProcessTimes.
[+] NtSetContextThread.
// plugin - PhantOm.dll
[+] PEB BeingDebugged.
[+] PEB NtGlobalFlag.
[+] GetStartupInfo.
[+] Process Heaps.
[+] GetTickCount.
[!] Protect DRx.
[!] Hide DRx.
[!] Fake Windows version.
[!] Custom Handler.
[+] BlockInput
|
能力值:
(RANK:170 )
|
-
-
3 楼
里面没有看到以前老版含有的 extremehide.sys
|
能力值:
( LV2,RANK:10 )
|
-
-
4 楼
自动释放 .
|
能力值:
(RANK:170 )
|
-
-
5 楼
看到了,呵呵,放到临时目录了,而且驱动名是随机的
|
能力值:
(RANK:10 )
|
-
-
6 楼
TRY ...
|
能力值:
( LV4,RANK:50 )
|
-
-
7 楼
wow!
支持哦...
看了原网站,是.**文的..
谢谢转帖!
|
能力值:
( LV4,RANK:50 )
|
-
-
8 楼
支持,
EXECryptor 2.2.4 / h2* 测试通过
TMD 1.9 测试通过
|
能力值:
( LV2,RANK:10 )
|
-
-
9 楼
好东西收下了
|
能力值:
( LV2,RANK:10 )
|
-
-
10 楼
不错。多谢!
|
|
|