1 Attachment(s)
In attach normalized resources... i removed all unused STATIC controls.
|
Quote:
|
Check out the awesome new attach dialog for all debugger plugins! Drag'n'Drop the crosshair to your attach target...
dl: https://bitbucket.org/NtQuery/scyllahide/downloads/ScyllaHide_v1.2.rar new doc https://bitbucket.org/NtQuery/scyllahide/downloads/ScyllaHidev1.2Doc.pdf Version 1.2 - All Plugins: New attach dialog with crosshair/bullseye window finder. - All Plugins: Tooltips with information (unfinished). Thanks to UniSoft! - Olly v1 Plugin: Fix for faulty handle bug - Olly v1 Plugin: Fix for NT symbol path bug added to "Fix Olly Bugs", thanks to redblkjck |
since we aim to unify and replace good old plugins phantOm, strongOD, ollyAdvanced into one open-source plugin:
Are there any features by them you still miss in ScyllaHide ? Features you really use and dont want to miss |
Very cool feture shooting targets.:)
All work as exepected. You should add flag Code:
PLUGIN_FIX | So sculla show in ida plugin at startup. So we dont have to load a file, and then shoot targets:D. |
Quote:
Also make sure you select proper debugger engine in that combobox before ! You CANT attach without opened IDB like IDA can Menu->Debugger->Attach |
Well would be alot of work to bypass to gain maybe 5 seconds of file loading.by the way have you seen in the sdk, how to execute commands via the windbg console in scripts / plugins
I searched the idapython api, no result.would be great creating memory dumpers, or writing unpackers scripts.. Maybe there is somwthing in the c ++ end. |
Quote:
Maybe place StrongOD :) you need to make future "More Dump Windows"(StrongOD have 5 windows, would like if we have more dump windows to work with memory) greets, quygia128 |
Quote:
we tested this of course and for us its working well Yes I also like and use the multiple memory dump windows but imho that is alot of work to realize |
Quote:
Plugin is shown in start off ida when no file is loaded. Got attach proccess box up, and ecerything but nothing to attach. :D put in pluginfolder Zullu.py Code:
import re i did however get it to show pids adding the code to spu processor and load file, so its maybe not save database independent. its enoufgh with *.d0 and *.d1 (temp database), or the processor_t that tells it to load a file. So if you can somehow create the temp databse when attaching it should work. Well i think :rolleyes: EDIT! actuelly they are there but got no names , since i didnt got the pid names. Got errot that database is only 16 bits, when using plugin. proberly need GetProcessPid(idx) and GetProcessName(idx) And tell pluginbits 32 bit. |
This is an update for olly v1 only right now.
https://bitbucket.org/NtQuery/scyllahide/downloads/ScyllaHide_v1.3_Olly1.rar Olly v1: - custom toolbar for dump and cpu window - del und insert shortcut - don't consume exceptions Olly v1 works now perfectly with EXECryptor, Obsidium and Themida... See documentation -> 1.1.19 Raise Exception, 1.3.13 Exception Problem https://bitbucket.org/NtQuery/scyllahide/downloads/ScyllaHidev1.3Doc.pdf |
Oops, you've found a dead link. 1st please reupload ScyllaHide_v1.3_Olly1.rar
|
Quote:
you can view all downloads available directly at https://bitbucket.org/NtQuery/scyllahide/downloads |
today was used scyllahide, was say this:
Quote:
when run ntapi from https://bitbucket.org/NtQuery/scyllahide/downloads was show as there if wana add: Quote:
|
Anyone try using ScyllaHide in win 10 ? I try but could not hide from debugger anymore :(. Now debugging to find the problem.
|
All times are GMT +8. The time now is 07:12. |
Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX