登录
首页 » Delphi » driver

driver

于 2007-11-02 发布 文件大小:3KB
0 138
下载积分: 1 下载次数: 114

代码说明:

  用DDDK编写驱动,修改SSDT表HOOK NTDebugActiveProcess函数 钩子函数中可以判断PID号,决定是否放行,放行则在钩子函数中调用原来的NTDebugActiveProcess函数.否则直接返回False.HOOK成功后所有调用DebugActiveProcess的程序将会失效.当然可以按照你的需要HOOK更多的系统服务函数.同一服务函数的服务号在每个操作系统版本中是不同的.下面附件中编译完成的驱动请在WinXP SP2的环境下测试.否则可能会导致直接重启(Used to prepare DDDK drive, modify SSDT Table HOOK NTDebugActiveProcess function hook function can determine the PID number, decide whether to release, release in the hook function to call the original function NTDebugActiveProcess. False.HOOK Otherwise, after the success of a direct return all calls DebugActiveProcess procedures will be failure. You can, of course, in accordance with the needs of more system services HOOK function. the same service function of the service in each of the operating system versions are different. following the completion of the annex to compile drivers in WinXP SP2 test environment. or else may lead to the resumption of direct)

下载说明:请别用迅雷下载,失败请重下,重下不扣分!

发表评论

0 个回复

  • 67857645345
    解除鼠标屏蔽的快捷键为:F10,用到了一个鼠标钩子函数MouseHook.cs,勾选窗口的对应复选框,里面有三个选项,屏蔽左键、右键和鼠标滚轮,点击操作栏内的“确定”按钮,功能即可启动,以前发过实现类似功能的C#代码,有兴趣的找一找,比较二者的异同。 ,作者拥有版权,仅供学习与参考。(Remove shortcut key mouse shield: F10, used a mouse hook function MouseHook.cs, the corresponding check check window frame, there are three options, shielding the left key, the right key and the mouse, click the column "set" button, function can be activated, before the hair to achieve a similar function of C# code, are interested in finding the similarities and differences between the two. The author, copyright, learning and reference purposes only.)
    2013-09-10 13:40:46下载
    积分:1
  • pwdspy
    PasswordSpy is a program to reveal passwords in other programs. It uses Windows Hooks to inject its code into other processes in order to reveal the password. It works by taking advantage of a security hole in Windows.
    2010-06-11 01:24:11下载
    积分:1
  • WiFi-AP-Solo_VA_0917
    使用微软API实现SoftAP功能,ICS功能。 (Microsoft API to achieve SoftAP function, ICS functionality.)
    2013-06-13 16:58:25下载
    积分:1
  • NdisMonitor_v1-00_kernel
    说明:  国外的一个中间层NDIS Hook 源码,通过Hook中间层,实现IP ARP 包的过滤。(Abroad, a middle layer NDIS Hook source, through Hook middle layer, to achieve IP ARP packet filtering.)
    2021-01-14 11:18:47下载
    积分:1
  • driver
    用DDDK编写驱动,修改SSDT表HOOK NTDebugActiveProcess函数 钩子函数中可以判断PID号,决定是否放行,放行则在钩子函数中调用原来的NTDebugActiveProcess函数.否则直接返回False.HOOK成功后所有调用DebugActiveProcess的程序将会失效.当然可以按照你的需要HOOK更多的系统服务函数.同一服务函数的服务号在每个操作系统版本中是不同的.下面附件中编译完成的驱动请在WinXP SP2的环境下测试.否则可能会导致直接重启(Used to prepare DDDK drive, modify SSDT Table HOOK NTDebugActiveProcess function hook function can determine the PID number, decide whether to release, release in the hook function to call the original function NTDebugActiveProcess. False.HOOK Otherwise, after the success of a direct return all calls DebugActiveProcess procedures will be failure. You can, of course, in accordance with the needs of more system services HOOK function. the same service function of the service in each of the operating system versions are different. following the completion of the annex to compile drivers in WinXP SP2 test environment. or else may lead to the resumption of direct)
    2007-11-02 17:54:26下载
    积分:1
  • KeyboardHook
    VC++ 键盘监控程序,可键盘输入文本,当你按下键盘上的每一个键的时候,它都可以监控到,并弹出窗口告诉你按下的是哪个键,是基于HOOK技术来说的。(VC++ keyboard monitoring procedures, keyboard input text when you press each key on the keyboard, it can be monitored, and the pop-up window telling you which key is pressed, it is based on the HOOK technology.)
    2013-12-22 15:43:07下载
    积分:1
  • thg
    智能指针,很好的vc支持代码, 适合vc开发人员,很好的源码(Smart Pointers, well supported by vc code, suitable for vc developers, a good source)
    2017-04-22 21:26:30下载
    积分:1
  • HOOK-API
    本程序实现HOOK MessageBoxA函数功能,大家如需HOOK其他API,只需修改MessageBoxA和模块名称即可(This program functions to achieve HOOK MessageBoxA function, we HOOK for other API, just change the name of MessageBoxA and modules can be)
    2011-05-25 13:14:00下载
    积分:1
  • CSharpDLl-zhuru
    C#版 DLL注入,比较难找到,选择dll后可以注入任意进程并且执行(C# version of the DLL injection, more difficult to find, select dll after injecting arbitrary process and execute)
    2021-03-19 15:19:19下载
    积分:1
  • DelphiApiHook
    APIHOOK,通过遍历PE文件修改导出函数表进行HOOK(APIHOOK, by traversing the PE file to modify the derived function table HOOK)
    2016-09-13 22:28:38下载
    积分:1
  • 696518资源总数
  • 104393会员总数
  • 22今日下载