PDA

View Full Version : Olly, Windows 7 and the plugins...


Darkelf
March 9th, 2010, 18:34
Hi there,

well, Win7 is now in the ring for a couple of month and so far it seems to be a pretty good OS. What nettled me all the time, was the fact that some beloved plugins for Olly don't work under it (OllyAdvanced for instance). There was a patch for Vista but that doesn't work under Win7 neither. There are some other plugins that don't work anymore, so i decided to do something against that
Most of us have a virtual machine for reversing but sometimes I don't want to boot it just to play with some CrackMe. Anyway!, virtualization was nevertheless the key to success. I virtualized OLLYDBG.exe and loaddll.exe under XP with SP3 and put it here:

http://ifile.it/e2s5oj4

The password is: woodmann

You simply put the two of them in your Olly folder and run it as usual. Every plugin known to me works now under Vista or Win7 as Olly thinks it's running under XP. Note that your ollydbg.ini is NOT working with this .exe (it's simply ignored), because OLLYDBG.exe has it's own .ini file virtualized in it. BUT you can configure this Olly just as you wish - your settings will be stored in the ini (you just can't see it ). You can also rename my OLLYDBG.exe to something else. If you do that, place an additional (original) OLLYDBG.exe in the same folder where the renamed one resides (otherwise Olly won't run).
I hope someone finds that useful.

Dark hint:

If you are running Antivir from Avira, it MIGHT complain about some generic problem. This is a known issue, as you can read here:
http://communities.vmware.com/message/1132333

and here:
http://forum.avira.com/wbb/?page=Thread&postID=731499&highlight=thinapp#post731499

If you don't trust it, upload the .exe files to Jotti or something similar or simply don't use it.

Best regards
darkelf

Elenil
March 9th, 2010, 22:40
what about plugins that have a driver like phantom plug ? using ssdt or other things

Darkelf
March 10th, 2010, 07:26
Well, since I've used OllyAdvanced from the time it was released, I was never in need of another plugin with just the same abilities. So the answer is: I really don't know. Just try it. I will also try that and if it fails, I'll try to virtualize this plugin directly into Olly. Unfortunately I don't know how well this plugin interacts with any other plugin but we will see

Best regards
darkelf

hnhhzy
March 20th, 2010, 00:20
why i use it,show me "GetEnvironmentString failed"?
my os version is win7 RTM 7600 x64
http://i3.6.cn/cvbnm/eb/c2/b4/85f591e38797adb3f5d52753deec5694.jpg

Darkelf
March 20th, 2010, 20:25
Hi there,

try to name it "OLLYDBG.exe" if renaming to OLLYDBG_WIN7.exe won't work.
Sorry if that causes any inconvenience.

Best regards
darkelf

edit: I've just seen that you have a chinese, korean, japanese (sorry, can't tell exactly from your screenshot) Windows. I don't know if that causes the failure, but I think it's possible.

hnhhzy
March 21st, 2010, 01:10
the same wrong.
i changed this name.because i use "OLLYDBG.exe" show the same wrong.so i change it.but same.

yes,i use chinese,is this problem?

hnhhzy
March 21st, 2010, 01:12
can u add me msn? thx
etrabbit@hotmail.com

Darkelf
March 21st, 2010, 11:06
Sorry. I don't even have an MSN account.
In case real-time communication is needed, I prefer IRC. I will write you an email within the next hours.
As for your chinese Windows - I really don't know if the chinese characters causes the virtual app not finding the needed environment variables, but I guess I would bet something on it.
Head up, there is a solution for everything

_genuine
March 23rd, 2010, 19:32
Thanks for this one DarkElf.

jadehawk
May 21st, 2010, 12:52
Hi tried to d/l the file but the link does not work.. can you reupload? thank you

Darkelf
May 21st, 2010, 13:59
Yes, I can.
I will return home within the next two hours and reupload it then.
Watch this post for an update.

darkelf

Kayaker
May 21st, 2010, 15:37
Darkelf, if you want why don't you create a new entry for it in the CRCETL and upload it as a locally archived zip file. You can put a description, date, etc. and update it at any time if you modify it.

It sounds like this existing category already fits the bill for where to put it..

http://www.woodmann.com/collaborative/tools/Category:OllyDbg_Custom_Versions

jadehawk
May 21st, 2010, 18:41
Quote:
[Originally Posted by Darkelf;86608]Yes, I can.
I will return home within the next two hours and reupload it then.
Watch this post for an update.

darkelf


Great Thank you for taking your time and respond to my post

Darkelf
May 23rd, 2010, 15:27
Sorry for being late.
I did as kayaker suggested and put it into the CRCETL. You can find it here:

http://www.woodmann.com/collaborative/tools/Virtualized_Olly_for_Win7

I noticed that there was an issue with my previous version as it was unable to debug DLLs (they did not load). This problem is solved now. If there is more that does not work properly, please post a comment in CRCETL or drop me a line via PM.

Best regards
darkelf

jadehawk
May 24th, 2010, 17:06
Thank you for the Re-upload