登录
首页 » Visual C++ » SSDTHook

SSDTHook

于 2012-06-25 发布 文件大小:817KB
0 214
下载积分: 1 下载次数: 164

代码说明:

  进程隐藏与进程保护(SSDT Hook 实现) 文章目录: 1. 引子 – Hook 技术 2. SSDT 简介 3. 应用层调用 Win32 API 的完整执行流程 4. 详解 SSDT 5. SSDT Hook 原理(SSDT Hook)

文件列表:

HookSSDT
........\Output
........\......\SSDT01.sys,5632,2012-05-29
........\......\SSDTProcess.exe,1805824,2012-05-29
........\SourceCode
........\..........\Ring0
........\..........\.....\SSDT01
........\..........\.....\......\SSDT01.c,10631,2012-05-29
........\..........\.....\......\SSDT01.h,7901,2012-05-29
........\..........\.....\......\SSDT01.reg,147,2011-08-15
........\..........\.....\......\SSDT01.sln,878,2011-08-15
........\..........\.....\......\SSDT01.vcxproj,6842,2012-05-28
........\..........\.....\......\SSDT01.vcxproj.filters,1349,2011-08-16
........\..........\.....\......\SSDT01.Win32.vddklaunch,704,2011-08-20
........\..........\.....\......\SSDTHook.c,1896,2012-05-29
........\..........\.....\......\SSDTHook.h,2311,2012-05-29
........\..........\.....\......\VisualDDKHelpers.h,1055,2011-08-15
........\..........\Ring3
........\..........\.....\SSDTProcess
........\..........\.....\...........\SSDTProcess
........\..........\.....\...........\...........\AboutDialog.cpp,2933,2012-05-29
........\..........\.....\...........\...........\AboutDialog.h,592,2011-09-04
........\..........\.....\...........\...........\ReadMe.txt,3089,2011-08-21
........\..........\.....\...........\...........\res




........\..........\.....\...........\...........\...\SSDTProcess.rc2,678,2011-08-21
........\..........\.....\...........\...........\resource.h,2444,2011-09-04
........\..........\.....\...........\...........\SSDTProcess.cpp,2011,2012-05-29
........\..........\.....\...........\...........\SSDTProcess.h,450,2012-05-29
........\..........\.....\...........\...........\SSDTProcess.rc,11636,2012-05-28
........\..........\.....\...........\...........\SSDTProcess.vcxproj,6345,2012-05-28
........\..........\.....\...........\...........\SSDTProcess.vcxproj.filters,2524,2012-05-28
........\..........\.....\...........\...........\SSDTProcessDlg.cpp,29440,2012-05-29
........\..........\.....\...........\...........\SSDTProcessDlg.h,3926,2012-05-29
........\..........\.....\...........\...........\stdafx.cpp,144,2011-08-21
........\..........\.....\...........\...........\stdafx.h,1616,2012-05-28
........\..........\.....\...........\...........\targetver.h,234,2011-08-21
........\..........\.....\...........\SSDTProcess.sln,900,2011-08-21

下载说明:请别用迅雷下载,失败请重下,重下不扣分!

发表评论


0 个回复

  • cmd
    采用钩子函数进行键盘监视,将键盘输入信息保存到一个文件中(Using the keyboard hook function monitor, keyboard input information saved to a file)
    2010-05-10 09:55:53下载
    积分:1
  • main
    基于句柄类的文本查询示例(C++ Primer 4th)(Text handle classes of queries based on the sample (C++ Primer 4th) )
    2013-09-22 15:12:37下载
    积分:1
  • Direct3DHook
    directx 3d hook,用callback的方式,提供endscene()和reset()的hook,很好的例子,供有志于hook dx3d的同学参考学习(directx 3d hook, provide endscene() and reset() hook in call back,good example)
    2017-01-16 12:39:07下载
    积分:1
  • CKeyHook
    CKeyHook是一个通过设定钩子,截获键盘事件的操作示例,对于掌握钩子的安装、事件截获等处理方法有参考价值。(CKeyHook is by setting the hook, intercepting keyboard events, the operation of example, to master the hook for the installation, the time intercept other treatment methods have reference value.)
    2020-12-29 22:29:00下载
    积分:1
  • remoteDesktop_GDI32_mirrorDriver
    屏幕录制,远程桌面传输,基于Windows图形驱动的屏幕截图技术,api hook,win32 gdi ,mirrorDriver(Screen recording, remote desktop transmission, based on the Windows graphics driver screenshots technology, api hook, win32 gdi, mirrorDriver)
    2020-06-26 14:20:01下载
    积分:1
  • raw_scoket
    说明:  使用原始套接字对包进行过滤,然后可以对所抓到的包进行详细的分析(use raw socket to filter packet)
    2011-04-13 10:03:09下载
    积分:1
  • QQMM
    QQ 盗号模拟, 监视键盘程序。 做的比较粗糙点(QQ simulated ones, monitor keyboard procedures. Rough point of comparison to do)
    2008-03-09 19:09:34下载
    积分:1
  • dllm
    Visual Basic Hook example
    2017-06-13 23:15:55下载
    积分:1
  • apispy32
    又一个截取替换api函数的程序,含95和NT版本,还带一个屏幕取词的例子( An interception replaces the api function the procedure, contains 95 and the NT edition, but also brings a screen to take the word the example )
    2020-06-26 11:20:01下载
    积分:1
  • selport
    在VC++中使用 WINDOWS API 函数对计算机串口进行读写操作(in VC use Windows API functions for serial port of computer literacy operation)
    2007-04-10 11:01:25下载
    积分:1
  • 696518资源总数
  • 105651会员总数
  • 15今日下载