View previous topic :: View next topic |
Author |
Message |
QWERTYCAT How do I cheat?
Reputation: 0
Joined: 28 Nov 2012 Posts: 3
|
Posted: Mon Oct 14, 2013 8:59 pm Post subject: How to use stealthedit with DBVM? |
|
|
Hey, I was wondering how I could get stealth edit to do stuff with DBVM so it doesn't get detected as easily. How can I achieve this? Thanks.
|
|
Back to top |
|
 |
Johner1261 Cheater
Reputation: 0
Joined: 09 Aug 2013 Posts: 44
|
Posted: Mon Oct 14, 2013 9:03 pm Post subject: |
|
|
Same, how can you take advantage of DBVM with stealth edit? That's what I'd like to know, I'm getting a new PC and I think it will support DBVM finally
|
|
Back to top |
|
 |
Geri Moderator
Reputation: 111
Joined: 05 Feb 2010 Posts: 5636
|
Posted: Mon Oct 14, 2013 9:56 pm Post subject: |
|
|
You don't need DBVM to use stealthedit.
_________________
|
|
Back to top |
|
 |
QWERTYCAT How do I cheat?
Reputation: 0
Joined: 28 Nov 2012 Posts: 3
|
Posted: Mon Oct 14, 2013 10:50 pm Post subject: |
|
|
I know, but is there a way to get stealthedit to use kernel mode instead of user mode?
|
|
Back to top |
|
 |
Geri Moderator
Reputation: 111
Joined: 05 Feb 2010 Posts: 5636
|
Posted: Tue Oct 15, 2013 12:05 am Post subject: |
|
|
It is not using the debugger at all. It won't become more stealthy with kernelmode debugger.
_________________
|
|
Back to top |
|
 |
Dark Byte Site Admin
Reputation: 470
Joined: 09 May 2003 Posts: 25793 Location: The netherlands
|
Posted: Tue Oct 15, 2013 5:03 am Post subject: |
|
|
I recommend first checking what part of stealthedit is detected.
Is it the dllname? Is it the call to specific api's? Is it the change in the protection flags of a specific page
Anyhow, you can use dbvm to make a stealthedit equivalent by making it hook the pagefault interrupt and manually setting the no execute bit in the pagetable. Then handle the redirect in the interrupt handler
_________________
Do not ask me about online cheats. I don't know any and wont help finding them.
Like my help? Join me on Patreon so i can keep helping |
|
Back to top |
|
 |
|