Immunity1.85 新增API

Attach
BackTrace
Detach
Eventndx
Handles
Heaps
HeapsAddr
MemoryPages
Modules
Symbols
Threads
__class__
__delattr__
__dict__
__doc__
__format__
__getattribute__
__hash__
__init__
__module__
__new__
__reduce__
__reduce_ex__
__repr__
__setattr__
__sizeof__
__str__
__subclasshook__
__weakref__
_createCodeforHook
_getHookEntry
_getmoduleinfo
addFastLogHook
addGenHook
addHeader
addKnowledge
addLine
analyseCode
assemble
callStack
cleanHooks
cleanKnowledge
cleanUp
clearState
clearStatusBar
closeProgressBar
comboBox
createLogWindow
createTable
createWindow
decodeAddress
deleteBreakpoint
disableBreakpoint
disableMemBreakpoint
disasm
disasmBackward
disasmBackwardAddressOnly
disasmBackwardCode
disasmBackwardData
disasmBackwardFile
disasmBackwardRTrace
disasmBackwardSizeOnly
disasmBackwardTrace
disasmCode
disasmData
disasmFile
disasmForward
disasmForwardAddressOnly
disasmForwardCode
disasmForwardData
disasmForwardFile
disasmForwardRTrace
disasmForwardSizeOnly
disasmForwardTrace
disasmRTrace
disasmSizeOnly
disasmTrace
error
findDataRef
findDecode
findDependecies
findLoops
findModule
findModuleByName
findPacker
flashMessage
forgetKnowledge
getAddress
getAddressOfExpression
getAllBasicBlocks
getAllFunctions
getAllHandles
getAllModules
getAllSymbols
getAllSymbolsFromModule
getAllThreads
getAnalyseComment
getArgumentsComment
getBreakpointType
getCallTree
getComment
getCurrentAddress
getCurrentTEBAddress
getDebuggedName
getDebuggedPid
getEvent
getFunction
getFunctionBegin
getFunctionEnd
getHeader
getHeap
getHeapsAddress
getInfoPanel
getInterCalls
getKnowledge
getLibraryComment
getMemoryPageByAddress
getMemoryPageByOwner
getMemoryPageByOwnerAddress
getMemoryPages
getModule
getModuleByAddress
getOpcode
getOsInformation
getOsRelease
getOsVersion
getPEB
getPEBAddress
getPage
getReferencedStrings
getRegs
getRegsRepr
getSehChain
getShellcodeExecutionNoMatterWhat
getStatus
getThreadId
getTraceArgs
getUserComment
getVariable
getXrefFrom
getXrefTo
goNextProcedure
goPreviousProcedure
goSilent
gotoDisasmWindow
gotoDumpWindow
gotoStackWindow
ignoreSingleStep
injectDll
inputBox
isAdmin
isAnalysed
isClosing
isEvent
isFinished
isRunning
isStopped
isValidHandle
isVista
isVmWare
isWin7
listHooks
listKnowledge
log
logLines
makeFunctionHash
makeFunctionHashExact
makeFunctionHashHeuristic
manualBreakpoint
markBegin
markEnd
oldSearch
openProcess
openTextFile
osrelease
ossystem
osversion
pause
prepareForNewProcess
ps
quitDebugger
rVirtualAlloc
rVirtualFree
readLong
readMemory
readShort
readString
readUntil
readWString
remoteVirtualAlloc
removeHeader
removeHook
removeLine
resolvFunctionByAddress
restartProcess
run
runTillRet
search
searchCommands
searchCommandsOnModule
searchFunctionByHeuristic
searchFunctionByName
searchLong
searchOnExecute
searchOnRead
searchOnWrite
searchShort
setBreakpoint
setBreakpointOnName
setComment
setConditionalBreakpoint
setFocus
setHardwareBreakpoint
setLabel
setLoggingBreakpoint
setMemBreakpoint
setProgressBar
setReg
setStatusBar
setStatusBarAndLog
setTemporaryBreakpoint
setUnconditionalBreakpoint
setVariable
setWatchPoint
sleepTillStopped
stepIn
stepOver
threadid
undecorateName
updateLog
validateAddress
vmQuery
writeLong

writeMemory

相對於自帶API文檔,新增了很多函數,其文檔並沒有將新的函數標註出來。新增的函數增加了很多反彙編和搜索的功能,比如disasmForwardCode、disasmForwardRTrace。

發表評論
所有評論
還沒有人評論,想成為第一個評論的人麼? 請在上方評論欄輸入並且點擊發布.
相關文章