Description: WINDOWS system today all rootkit more popular HOOK square, even if they are active hips killing, absolutely has the value of learning
To Search:
File list (Check if you may need any files):
ARK__ALL_HOOOl\RK_ALL_HOOK\IDTHook\HookIDT.c
..............\...........\.......\IDTHook.vcproj
..............\...........\MAKEFILE
..............\...........\mysockets.c
..............\...........\NtInlineHook\InlineHook.c
..............\...........\............\MAKEFILE
..............\...........\............\NtInlineHook.vcproj
..............\...........\............\SOURCES
..............\...........\............\ssdt.c
..............\...........\............\ssdt.h
..............\...........\PortHide.h
..............\...........\pthide.cpp
..............\...........\reghide.c
..............\...........\reghide.h
..............\...........\rkhide.c
..............\...........\rkhide.h
..............\...........\RK_HIDE\RK_HIDE.vcproj
..............\...........\scirpt_for_windbg_ssdt.txt
..............\...........\SOURCES
..............\...........\.SDT_HOOK\main.c
..............\...........\.........\main.h
..............\...........\.........\MAKEFILE
..............\...........\.........\SOURCES
..............\...........\.........\ssdt.c
..............\...........\.........\ssdt.h
..............\...........\.........\SSDT_HOOK.vcproj
..............\...........\.ysEnterHook\GetOpcodeSize.c
..............\...........\............\GetOpCodeSize.h
..............\...........\............\SysEnter.c
..............\...........\............\SysEnterHook.vcproj
..............\...........\tcpioctl.h
..............\...........\IDTHook
..............\...........\NtInlineHook
..............\...........\RK_HIDE
..............\...........\SSDT_HOOK
..............\...........\SysEnterHook
..............\RK_ALL_HOOK
ARK__ALL_HOOOl