'1.54'에 해당되는 글 2건

  1. 2009.01.26 Imm_PhantOm Plugin 1.54 by CEOinIRVINE
  2. 2009.01.26 PhantOm Plugin 1.54 by CEOinIRVINE

Imm_PhantOm Plugin 1.54

Hacking 2009. 1. 26. 06:17

Plug-in for concealment OllyDbg (plugin with the driver). Helps from following methods of detection:

// driver - extremehide.sys

[+] NtQueryInformationProcess.
[+] SetUnhandledExceptionFilter.
[+] OpenProcess.
[+] Invalid Handle.
[+] NtSetInformationThread.
[+] RDTSC.
[+] NtYieldExecution.
[+] NtQueryObject.
[+] NtQuerySystemInformation.
[+] Windows hide.
[+] GetProcessTimes.
[+] NtSetContextThread.

// plugin - PhantOm.dll

[+] PEB BeingDebugged.
[+] PEB NtGlobalFlag.
[+] GetStartupInfo.
[+] Process Heaps.
[+] GetTickCount.
[!] Protect DRx.
[!] Hide DRx.
[!] Fake Windows version.
[!] Custom Handler.
[+] BlockInput

http://vip-file.com/download/8d00af885300/PhantOm-Plugin-v1.54.7z.html

'Hacking' 카테고리의 다른 글

ASPROTECT UNPACKER  (0) 2009.01.26
Kernel Detective v1.2  (0) 2009.01.26
PhantOm Plugin 1.54  (0) 2009.01.26
OllyMoreMenu-v1.3c  (0) 2009.01.26
DeFixed_Edition_v2  (0) 2009.01.24
Posted by CEOinIRVINE
l

PhantOm Plugin 1.54

Hacking 2009. 1. 26. 06:16

Plug-in for concealment OllyDbg (plugin with the driver). Helps from following methods of detection:

// driver - extremehide.sys

[+] NtQueryInformationProcess.
[+] SetUnhandledExceptionFilter.
[+] OpenProcess.
[+] Invalid Handle.
[+] NtSetInformationThread.
[+] RDTSC.
[+] NtYieldExecution.
[+] NtQueryObject.
[+] NtQuerySystemInformation.
[+] Windows hide.
[+] GetProcessTimes.
[+] NtSetContextThread.

// plugin - PhantOm.dll

[+] PEB BeingDebugged.
[+] PEB NtGlobalFlag.
[+] GetStartupInfo.
[+] Process Heaps.
[+] GetTickCount.
[!] Protect DRx.
[!] Hide DRx.
[!] Fake Windows version.
[!] Custom Handler.
[+] BlockInput

Whats new: - 1.20

[*] Added own handling of exception (C0000005).
[*] Added option for the title change of the main window.
[*] Added own handling of exception (OUTPUT_DEBUG_STRING_EVENT).
[*] int 3 at EP correctly removed.
[*] Added interception of BlockInput. (WinXP only)
[*] Added own handling of exception (C0000094).
[*] Added hiding of GetStartupInfo.
[*] Fixed bug with changing the options of the plugin.
[*] Added more defense of the driver from detection.

http://vip-file.com/download/0fb19f513060/PhantOm-Plugin-v1-.54.7z.html

'Hacking' 카테고리의 다른 글

Kernel Detective v1.2  (0) 2009.01.26
Imm_PhantOm Plugin 1.54  (0) 2009.01.26
OllyMoreMenu-v1.3c  (0) 2009.01.26
DeFixed_Edition_v2  (0) 2009.01.24
How to Compile Wall Hack  (0) 2009.01.24
Posted by CEOinIRVINE
l