Author Topic: WinICE problem  (Read 7371 times)

0 Members and 1 Guest are viewing this topic.

Offline neusbeer

  • Knight
  • **
  • Posts: 223
  • Cookies: 11
  • Beer makes you stronger XD
    • View Profile
    • http://www.facebook.nl/hackneus
WinICE problem
« on: May 12, 2012, 09:50:33 am »
Not sure where to put this question.



I installed WinICE, but I wanna deinstall/deactivate it.
how can I do this?


If I start an other program now I get a message that it won't run
because of there's a debugger running.
It's in win xp sp3, where can I get this option to set off?


Deinstalling WinICE won't work, I still got the same message from the other programs.

--Neusbeer

Offline p_2001

  • Royal Highness
  • ****
  • Posts: 684
  • Cookies: -64
    • View Profile
Re: WinICE problem
« Reply #1 on: May 12, 2012, 11:07:10 am »
lol

try this.....

http://upload.evilzone.org/download.php?id=5634959&type=zip
it will hide winice


if it does not work you should try cleaning registry, else just reinstall os

try using ollydbg for reversing
"Always have a plan"

Offline neusbeer

  • Knight
  • **
  • Posts: 223
  • Cookies: 11
  • Beer makes you stronger XD
    • View Profile
    • http://www.facebook.nl/hackneus
Re: WinICE problem
« Reply #2 on: May 12, 2012, 12:37:57 pm »
hmmm... taking a closer look. it's SoftIce. (Isn't that the same?)

anyway, don't have winice.exe


but ehm, at the beginning of the installation, he asked to change some registry things.
(Turning debugging on I think)
Any idea where to search in regedit?
--Neusbeer

Offline p_2001

  • Royal Highness
  • ****
  • Posts: 684
  • Cookies: -64
    • View Profile
Re: WinICE problem
« Reply #3 on: May 12, 2012, 01:25:34 pm »
hmmm... taking a closer look. it's SoftIce. (Isn't that the same?)

anyway, don't have winice.exe


but ehm, at the beginning of the installation, he asked to change some registry things.
(Turning debugging on I think)
Any idea where to search in regedit?

I'm new to reversing and well softice is not used anymore is it?

use ollydbg and visit this place, a lot of stuff is present for reversers

most programs detect softice with too many ways, and what do you mean you do not have exe?
you did install the debugger!

what I provided is well known method to hide Softice



http://www.woodmann.com/forum/index.php
« Last Edit: May 12, 2012, 01:26:52 pm by p_2001 »
"Always have a plan"

Offline neusbeer

  • Knight
  • **
  • Posts: 223
  • Cookies: 11
  • Beer makes you stronger XD
    • View Profile
    • http://www.facebook.nl/hackneus
Re: WinICE problem
« Reply #4 on: May 12, 2012, 02:13:22 pm »
yeah but no winice.exe
look at the dir structure


Code: [Select]
Het volume in station C heeft geen naam.
 Het volumenummer is 3807-71C9


 Map van C:\Program Files\NuMega


12-05-2012  14:12    <DIR>          .
12-05-2012  14:12    <DIR>          ..
12-05-2012  14:12                 0 dirlist.txt
11-05-2012  23:34    <DIR>          SoftIceNT
               1 bestand(en)                0 bytes


 Map van C:\Program Files\NuMega\SoftIceNT


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
25-01-2000  04:05             4.237 CommRef.CNT
25-01-2000  04:05           706.560 Commref.hlp
11-05-2012  23:34    <DIR>          Examples
25-01-2000  04:05            81.997 icedat.dll
25-01-2000  04:05           102.462 IcePACK.exe
25-01-2000  04:05           106.556 KD2SYS.exe
25-01-2000  04:05            36.951 KD2SYSXLAT.exe
25-01-2000  04:05             3.692 loader32.cnt
25-01-2000  04:05         1.855.468 loader32.exe
25-01-2000  04:05           109.091 Loader32.hlp
11-05-2012  23:34    <DIR>          Network
25-01-2000  04:05            98.372 nmsym.exe
25-01-2000  04:05           413.766 nmtrans.dll
25-01-1996  16:36                17 ntice.bat
15-11-1996  16:25             7.398 ntice.ico
20-01-2000  16:29            30.788 Readme.htm
25-01-2000  04:05            16.529 Serial.exe
25-01-2000  04:05            73.788 Serial32.exe
11-05-2012  23:34    <DIR>          Setup
11-05-2012  23:44               314 siload.ini
25-01-2000  04:05           114.746 SINet.exe
25-01-2000  04:05         1.681.120 SoftICE Command Reference.pdf
11-05-2012  23:34            76.086 SoftICE.isu
25-01-2000  04:05         2.273.989 Using SoftICE.pdf
11-05-2012  23:34    <DIR>          Util16
20-11-1996  10:34            67.072 Whatsnew.doc
25-01-2000  04:05            12.409 Wldr.hlp
              23 bestand(en)        7.873.408 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Examples


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
11-05-2012  23:34    <DIR>          GDIDemo
               0 bestand(en)                0 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Examples\GDIDemo


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
25-01-2000  04:05            15.020 Bounce.c
25-01-2000  04:05             2.298 Bounce.h
25-01-2000  04:05             8.827 Dialog.c
25-01-2000  04:05             6.853 Draw.c
25-01-2000  04:05             1.369 Draw.h
25-01-2000  04:05             8.869 Gdidemo.c
25-01-2000  04:05               743 Gdidemo.def
25-01-2000  04:05             2.863 Gdidemo.h
25-01-2000  04:05               766 Gdidemo.ico
25-01-2000  04:05             4.222 Gdidemo.rc
25-01-2000  04:05             7.091 Init.c
25-01-2000  04:05             1.636 Makefile
25-01-2000  04:05             4.101 Maze.c
25-01-2000  04:05             1.195 Maze.h
25-01-2000  04:05            12.207 Poly.c
25-01-2000  04:05             2.100 Poly.h
25-01-2000  04:05               116 Readme.txt
25-01-2000  04:05             3.012 Wininfo.c
25-01-2000  04:05             7.396 Xform.c
25-01-2000  04:05             1.262 Xform.h
              20 bestand(en)           91.946 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Network


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
11-05-2012  23:34    <DIR>          3C90X
11-05-2012  23:34    <DIR>          NE2000
               0 bestand(en)                0 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Network\3C90X


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
25-01-2000  04:05            22.542 NETNM3C.inf
25-01-2000  04:05            81.872 NM90XBC4.sys
25-01-2000  04:05            85.080 NM90XBC5.sys
25-01-2000  04:05            95.652 NM90XND4.sys
25-01-2000  04:05            95.092 NM90XND5.sys
25-01-2000  04:05            49.329 OEMSETUP.INF
               6 bestand(en)          429.567 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Network\NE2000


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
25-01-2000  04:05            18.121 NETNMNE.INF
25-01-2000  04:05            18.348 NMNE2K4.sys
25-01-2000  04:05            24.080 NMNE2K5.sys
25-01-2000  04:05            31.202 OEMSETUP.INF
               4 bestand(en)           91.751 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Setup


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
24-01-1996  13:43                11 AUTOEXEC.NT
24-01-1996  13:44                10 CONFIG.NT
25-01-2000  06:18            24.576 sindos.exe
24-06-1997  17:15               545 SINDOSNT.PIF
25-01-2000  06:18            36.864 sinsetup.dll
25-01-2000  06:18            45.056 SiSetup.exe
25-01-2000  06:18            90.112 sividset.dll
25-01-2000  04:05           241.788 siwvid.sys
22-12-1999  11:26            12.662 Vsetup.ini
               9 bestand(en)          451.624 bytes


 Map van C:\Program Files\NuMega\SoftIceNT\Util16


11-05-2012  23:34    <DIR>          .
11-05-2012  23:34    <DIR>          ..
25-01-2000  04:05           156.160 Dbg2map.exe
25-01-2000  04:05            18.909 Dldr.exe
25-01-2000  04:05             1.763 Dlog.exe
25-01-2000  04:05             4.972 Msym.exe
25-01-2000  04:05             4.111 Util16.txt
25-01-2000  04:05           116.272 Wldr.exe
25-01-2000  04:05            12.409 Wldr.hlp
               7 bestand(en)          314.596 bytes


     Totaal aantal weergegeven bestanden:
              70 bestand(en)        9.252.892 bytes
              26 map(pen)  179.926.364.160 bytes beschikbaar
--Neusbeer

Offline neusbeer

  • Knight
  • **
  • Posts: 223
  • Cookies: 11
  • Beer makes you stronger XD
    • View Profile
    • http://www.facebook.nl/hackneus
Re: WinICE problem
« Reply #5 on: May 12, 2012, 02:27:25 pm »
found it.. pff took me a few hours.. :P lol


had to delete Registry key: HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/NTICE


thnxs for the link btw.
« Last Edit: May 12, 2012, 02:28:19 pm by neusbeer »
--Neusbeer