Location:
Search - ssdt delphi
Search list
Description: Delphi开发驱动的一个例子
1.映射ntoskrnl.exe到内存
2.重定位信息...
3.搜索SSDT基址
4.补丁回去
Platform: |
Size: 14457 |
Author: fanghui |
Hits:
Description: DELPHI下隐藏进程的几种方法,附完整源码,包括SDK-DELPHI process under the hidden several ways, with complete source code, including the SDK
Platform: |
Size: 96256 |
Author: 休格兰 |
Hits:
Description: 用DDDK编写驱动,修改SSDT表HOOK NTDebugActiveProcess函数
钩子函数中可以判断PID号,决定是否放行,放行则在钩子函数中调用原来的NTDebugActiveProcess函数.否则直接返回False.HOOK成功后所有调用DebugActiveProcess的程序将会失效.当然可以按照你的需要HOOK更多的系统服务函数.同一服务函数的服务号在每个操作系统版本中是不同的.下面附件中编译完成的驱动请在WinXP SP2的环境下测试.否则可能会导致直接重启-Used to prepare DDDK drive, modify SSDT Table HOOK NTDebugActiveProcess function hook function can determine the PID number, decide whether to release, release in the hook function to call the original function NTDebugActiveProcess. False.HOOK Otherwise, after the success of a direct return all calls DebugActiveProcess procedures will be failure. You can, of course, in accordance with the needs of more system services HOOK function. the same service function of the service in each of the operating system versions are different. following the completion of the annex to compile drivers in WinXP SP2 test environment. or else may lead to the resumption of direct
Platform: |
Size: 3072 |
Author: 张京 |
Hits:
Description: 一个恢复r0态SSDT挂钩的小程序,包括exe文件和驱动文件的源码-R0 a restoration of state SSDT linking small procedures, including exe files and driver source files
Platform: |
Size: 1841152 |
Author: MTrickster |
Hits:
Description: DELPHI恢复SSDT源码
有搞这方面的人可以学习一下-DELPHI source SSDT has engaged in the restoration of this area can learn about
Platform: |
Size: 439296 |
Author: lianx |
Hits:
Description: Delphi开发驱动的一个例子
1.映射ntoskrnl.exe到内存
2.重定位信息...
3.搜索SSDT基址
4.补丁回去-Delphi developed an example-driven 1. Mappings ntoskrnl.exe into memory 2. ... 3, re-positioning information. Search SSDT base address 4. Patch back
Platform: |
Size: 14336 |
Author: fanghui |
Hits:
Description: HOOK SSDT Hook系统服务描述表.查看SSDT.是个好东西-HOOK SSDT that s may be is you need
Platform: |
Size: 64512 |
Author: yaohu |
Hits:
Description: DELPHI恢复SSDT winXP D7编译通过-Delphi Recover SSDT
Platform: |
Size: 468992 |
Author: hahahahah |
Hits:
Description: delphi的驱动 功能是恢复ssdt的地址.-delphi functions is to restore the drive ssdt address.
Platform: |
Size: 63488 |
Author: 马大仙 |
Hits:
Description: delphi的驱动 功能是恢复ssdt的地址.-delphi functions is to restore the drive ssdt address.
Platform: |
Size: 269312 |
Author: 马大仙 |
Hits:
Description: 驱动文件ssdt恢复的实例,不错的源码。-ssdt examples of recovery, a good source.
Platform: |
Size: 27648 |
Author: 陈帅哥 |
Hits:
Description: SSDT UNHOOK DELPHI CODE
Platform: |
Size: 8192 |
Author: b803369 |
Hits:
Description: 就是delphi还原SSDT,效果还不错-Delphi is to restore the SSDT, the results were good
Platform: |
Size: 3072 |
Author: 张张 |
Hits:
Description: SSDT HOOK Source code
Platform: |
Size: 46080 |
Author: richard12 |
Hits:
Description: 恢复ssdt
躲过杀软查杀,有利于木马进一步存活!-Soft-recovery ssdt escape the killing killing are conducive to the further survival of Trojan!
Platform: |
Size: 62464 |
Author: 痞子 |
Hits:
Description: 通过搜索 SSDT 并和 ZwSystemDebugControl 获取的内容相比较
* 找出不同的SSDT项-通过搜索 SSDT 并和 ZwSystemDebugControl 获取的内容相比较
* 找出不同的SSDT项
Platform: |
Size: 6144 |
Author: flyangel |
Hits:
Description: DELPHI恢复SSDT,DELPHI恢复SSDT-DELPHI恢复SSDT
Platform: |
Size: 439296 |
Author: yifei |
Hits:
Description: SSDT Table Viewr, Detecting SSDT HOoks .
Platform: |
Size: 14336 |
Author: __Genius__ |
Hits:
Description: 驱动级SSDT 钩子 打造完美不死程序 挂接NtOpenProcess 函数,防护进程不被关闭-SSDT hooks create the perfect drive-level program articulated NtOpenProcess die function, the process of being shut down protection
Platform: |
Size: 9216 |
Author: 洋洋 |
Hits:
Description: ZwOpenProcess SSDT Hook test to catch open process information.
Compile it with Meerkat Advanced kernel mode driver GUI for KmdKit4D.
Link: http://www.mediafire.com/?hbhjorv8797k2-ZwOpenProcess SSDT Hook test to catch open process information.
Compile it with Meerkat Advanced kernel mode driver GUI for KmdKit4D.
Link: http://www.mediafire.com/?hbhjorv8797k2ee
Platform: |
Size: 2048 |
Author: STRELiTZIA |
Hits: