- 博客(3)
- 资源 (2)
- 问答 (1)
- 收藏
- 关注
原创 重载内核(x86)
#include #include #include #include #include #include #include #ifndef MAX_PATH#define MAX_PATH 256#endiftypedef unsigned char *PBYTE;typedef unsigned char BYTE;typedef unsigned int UIN
2016-11-17 17:09:55 2292
原创 SSDT HOOK
#include #include NTKERNELAPI UCHAR * PsGetProcessImageFileName(__in PEPROCESS Process);#pragma pack(1) typedef struct _SystemServiceEntry { ULONG *ServiceTableBase; ULONG *Ser
2016-11-17 17:08:15 407
原创 内核隐藏进程
#include #include #include NTKERNELAPI UCHAR *PsGetProcessImageFileName(PEPROCESS Process);#ifndef MAX_PATH#define MAX_PATH 260#endifDWORD g_OsVersion;
2016-11-16 18:22:33 2521
函数多线安全性问题,大家帮我看看
2015-06-04
TA创建的收藏夹 TA关注的收藏夹
TA关注的人