Register for your free account! | Forgot your password?

Go Back   elitepvpers > General Gaming > General Gaming Discussion
You last visited: Today at 23:13

  • Please register to post and access all features, it's quick, easy and FREE!

 

[Tut] BoI Bypass AntiDebugger

Reply
 
Old   #1
 
elite*gold: 0
Join Date: May 2010
Posts: 77
Received Thanks: 352
[Tut] BoI Bypass AntiDebugger

Apparently it doesn't work for others, but just follow the links especialy the unpacking VMprotect 2.0 and you'll be able to figure out the correct settings

Quote:
To bypass the anti-debugger functions of Battle of Immortals (which uses VMProtect V2.01) on WinXp 32bit I use the following setup on ollydbg 1.1. Please note that just because it works for me doesn't mean it will for you o.0

1) I setup Olly as the following
You must register and activate your account in order to view images.

You must register and activate your account in order to view images.


2) I use StrongOD and followed his/her instructions at this link. Note, i didn't use CreateAsRestrict because it didn't work. Also for the latest dbghelp (as of atm) pw: moose

3) Lastly here's the settings i use for StrongOD
You must register and activate your account in order to view images.


More Info, Useful Links
-
-
-


Notes
-Other Olly plugins might interfere with StrongOD, so you might have to disable them
-Game.exe is protected with vmProtect so any patching will have to made as runtime with a loader (i suggest dUp)
-I'm not any good at ollydbg, unpacking and the whatnot but I thought I would just dump this here to save people some time rather then having them find this on there own.
-I was only able to get this to work on Windows XP
-This is a rather confusing tutorials so if you have any questions i might be able to help, so feel free to ask.



0xDEC0DE is offline  
Old   #2
 
elite*gold: 0
Join Date: May 2010
Posts: 77
Received Thanks: 352
Just though i'd dump this tutorial since i don't play anymore and it was just sitting on my HD. So enjoy~


0xDEC0DE is offline  
Old   #3
 
elite*gold: 0
Join Date: Aug 2008
Posts: 22
Received Thanks: 0
for me its dont work
konserwa is offline  
Old   #4
 
elite*gold: 40
Join Date: Sep 2006
Posts: 1,892
Received Thanks: 804
Please post some form a proof that is isn't a virus.
And post some picture or video;;
using fraps, or hypercam
to prove that it works!
You can scan it at:


gerble93 is offline  
Old   #5
 
elite*gold: 0
Join Date: May 2010
Posts: 77
Received Thanks: 352
Quote:
Originally Posted by gerble93 View Post
Please post some form a proof that is isn't a virus.
And post some picture or video;;
using fraps, or hypercam
to prove that it works!
You can scan it at:
If you think that the dbghelp.dll file I uploaded is a virus go download it directly from microsoft at Hardware Developer Debugging Tools for Windows 32-bit version. Howeverits wrapped into an iso that's about 600mb, just trying to save peeps the trouble of downloading the whole file.

Maybe i didn't make myself clear, but i only got it to bypass vmprotect on XP 32bit but that's because some anti-debugger plugins dont work 100% on win7. As for proof... well i didn't just magically know where the in-game functions were located at...

Quote:
Please note that just because it works for me doesn't mean it will for you o.0
Reality is that if you can't bypass this on your own, then you probably shouldn't be trying. That being said it took me a few days to figure it out since i'm a n00b, but i dont give up.
0xDEC0DE is offline  
Old   #6
 
elite*gold: 0
Join Date: Apr 2009
Posts: 237
Received Thanks: 400
bypassing anti-dbg and attaching the debugger is a common thing when you work with VMProtect. More advanced thing is a finding/fixing IAT.
Quote:
to prove that it works!
LCF-AT (author of the bypassing tutorial) method works
dwar is offline  
Old   #7
 
elite*gold: 106
Join Date: Oct 2006
Posts: 6,045
Received Thanks: 1,160
Quote:
Originally Posted by gerble93 View Post
Please post some form a proof that is isn't a virus.
And post some picture or video;;
using fraps, or hypercam
to prove that it works!
You can scan it at:
Hes clean, no worries.
Huseby is offline  
Old   #8
 
elite*gold: 0
Join Date: Feb 2008
Posts: 31
Received Thanks: 15
I'm not that noob at dissambling, but I've never used any plugins with ollydbg. How am I supposed to install this plugin? I've searched 30 mins on google and stuff, but can't find anything. I've already made some cool hacks for BOI such as speedhack, auto repair anywhere and my own bot. Thanks in advance
Jamboo is offline  
Old   #9
 
elite*gold: 0
Join Date: May 2010
Posts: 77
Received Thanks: 352
Quote:
Originally Posted by Jamboo View Post
I'm not that noob at dissambling, but I've never used any plugins with ollydbg. How am I supposed to install this plugin? I've searched 30 mins on google and stuff, but can't find anything. I've already made some cool hacks for BOI such as speedhack, auto repair anywhere and my own bot. Thanks in advance
You put the plugin's .dll in the plugin folder, which is can be set in options > appearance > directories. Right now Ollydbg2.0 doesn't suppost plugins only 1.1 does
0xDEC0DE is offline  
Old   #10
 
elite*gold: 0
Join Date: Feb 2008
Posts: 31
Received Thanks: 15
Quote:
Originally Posted by 0xDEC0DE View Post
You put the plugin's .dll in the plugin folder, which is can be set in options > appearance > directories. Right now Ollydbg2.0 doesn't suppost plugins only 1.1 does
thanks! so that's why I couldn't find it I kept browsing on the options and on the internet and couldnt find anything.

Lets see if this works on my 32bit XP Pro SP3

Edit: nah, doesn't work
Jamboo is offline  
Old   #11
 
elite*gold: 0
Join Date: Oct 2009
Posts: 8,740
Received Thanks: 5,268
Very nice tutorial indeed.
Arcо is offline  
Old   #12
 
elite*gold: 0
Join Date: May 2009
Posts: 125
Received Thanks: 131
Quote:
Originally Posted by Jamboo View Post
thanks! so that's why I couldn't find it I kept browsing on the options and on the internet and couldnt find anything.

Lets see if this works on my 32bit XP Pro SP3

Edit: nah, doesn't work

i know that im new and this post is a bit old, but this is working, i get the game running with no messages from my vm with xp 32 bit, i have win 7 64 bit so its more complicate have the things working. thanx a lot for the tut. good luck
even i could run, i just use the orinigal ollydbg with the strongOD plugin.


phantom23 is offline  
Reply



« Previous Thread | Next Thread »

Similar Threads
[Info] XPI (Packet editor) & HS Bypass + MSCRC Bypass for sale!
Irwin(x0r from CEF) from GGCRCBYPASS.com is selling a packet inspector, and will include: MapleStory CRC bypass A generic HackShield bypass(I...
0 Replies - Maple Story



All times are GMT +1. The time now is 23:13.


Powered by vBulletin®
Copyright ©2000 - 2017, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Abuse
Copyright ©2017 elitepvpers All Rights Reserved.