This is already done by HideTools and Phanton alike plugins for OllyDbg.
Ring0 - the source of inspiration
A forum for reverse engineering, OS internals and malware analysis
This is already done by HideTools and Phanton alike plugins for OllyDbg.I couldn't find any HideTools link, do you have one?
Tigzy wrote:not original, binary modified version by FyyreThis is already done by HideTools and Phanton alike plugins for OllyDbg.I couldn't find any HideTools link, do you have one?
Tigzy wrote:Thanks, kind of usefull tool!Look at it's hooks in SST/SSST. That's all documentation you need to know.
EDIT: Any documentation about what is hidden or not ? It hides registry keys as well?
Tigzy wrote:My initial reply was for this post.This is program A. It detects by malware. This is program B. It detects by malware. A and B all the different and all GUI based. How do you planning to protect them from detection in a generic way? It's impossible.I mean every program often targeted (process exp , ollyDbg, etc...). Malware have generic ways to detect them, so I only need to act as well.
Yet again, it's impossible and no sense to built such hide anything stuff. You will create BSOD-generator nothing more.We'll see. You're probably right, but as this tools will be for VMs, we don't take much risks.