Welcome![Sign In][Sign Up]
Location:
Search - hook ssdt delphi

Search list

[Hook apidriver

Description: 用DDDK编写驱动,修改SSDT表HOOK NTDebugActiveProcess函数 钩子函数中可以判断PID号,决定是否放行,放行则在钩子函数中调用原来的NTDebugActiveProcess函数.否则直接返回False.HOOK成功后所有调用DebugActiveProcess的程序将会失效.当然可以按照你的需要HOOK更多的系统服务函数.同一服务函数的服务号在每个操作系统版本中是不同的.下面附件中编译完成的驱动请在WinXP SP2的环境下测试.否则可能会导致直接重启-Used to prepare DDDK drive, modify SSDT Table HOOK NTDebugActiveProcess function hook function can determine the PID number, decide whether to release, release in the hook function to call the original function NTDebugActiveProcess. False.HOOK Otherwise, after the success of a direct return all calls DebugActiveProcess procedures will be failure. You can, of course, in accordance with the needs of more system services HOOK function. the same service function of the service in each of the operating system versions are different. following the completion of the annex to compile drivers in WinXP SP2 test environment. or else may lead to the resumption of direct
Platform: | Size: 3072 | Author: 张京 | Hits:

[OS programDELPHI_SSDT

Description: DELPHI恢复SSDT源码 有搞这方面的人可以学习一下-DELPHI source SSDT has engaged in the restoration of this area can learn about
Platform: | Size: 439296 | Author: lianx | Hits:

[Driver Developssdt.

Description: Delphi开发驱动的一个例子 1.映射ntoskrnl.exe到内存 2.重定位信息... 3.搜索SSDT基址 4.补丁回去-Delphi developed an example-driven 1. Mappings ntoskrnl.exe into memory 2. ... 3, re-positioning information. Search SSDT base address 4. Patch back
Platform: | Size: 14336 | Author: fanghui | Hits:

[OS programSSDT_Helper_src

Description: HOOK SSDT Hook系统服务描述表.查看SSDT.是个好东西-HOOK SSDT that s may be is you need
Platform: | Size: 64512 | Author: yaohu | Hits:

[Delphi VCLDelphiRESSDT

Description: 就是delphi还原SSDT,效果还不错-Delphi is to restore the SSDT, the results were good
Platform: | Size: 3072 | Author: 张张 | Hits:

[Hook apiSSTD.ZIP

Description: SSDT HOOK Source code
Platform: | Size: 46080 | Author: richard12 | Hits:

[Delphi VCLDELPHI_SSDT_HOOK

Description: this is an example on How to make a rootkit using Delphi
Platform: | Size: 2048 | Author: n3m0 | Hits:

[OS programZwLoadDriverHook

Description: [Delphi] LoadDriver SSDT Hook. Compile it with Meerkat 1.1 Use DbgView to catch informations. Only for Windows XP. Meerkat 1.1 link : http://www.mediafire.com/?hbhjorv8797k2-[Delphi] LoadDriver SSDT Hook. Compile it with Meerkat 1.1 Use DbgView to catch informations. Only for Windows XP. Meerkat 1.1 link : http://www.mediafire.com/?hbhjorv8797k2ee
Platform: | Size: 1024 | Author: STRELiTZIA | Hits:

[Delphi VCLZwOpenProcessHook

Description: ZwOpenProcess SSDT Hook test to catch open process information. Compile it with Meerkat Advanced kernel mode driver GUI for KmdKit4D. Link: http://www.mediafire.com/?hbhjorv8797k2-ZwOpenProcess SSDT Hook test to catch open process information. Compile it with Meerkat Advanced kernel mode driver GUI for KmdKit4D. Link: http://www.mediafire.com/?hbhjorv8797k2ee
Platform: | Size: 2048 | Author: STRELiTZIA | Hits:

[Delphi/CppBuilderHOOK2

Description: delphi hook, ssdt hook
Platform: | Size: 628736 | Author: snowpando | Hits:

CodeBus www.codebus.net