登录
首页 » Delphi » driver

driver

于 2007-11-02 发布 文件大小:3KB
0 229
下载积分: 1 下载次数: 114

代码说明:

  用DDDK编写驱动,修改SSDT表HOOK NTDebugActiveProcess函数 钩子函数中可以判断PID号,决定是否放行,放行则在钩子函数中调用原来的NTDebugActiveProcess函数.否则直接返回False.HOOK成功后所有调用DebugActiveProcess的程序将会失效.当然可以按照你的需要HOOK更多的系统服务函数.同一服务函数的服务号在每个操作系统版本中是不同的.下面附件中编译完成的驱动请在WinXP SP2的环境下测试.否则可能会导致直接重启(Used to prepare DDDK drive, modify SSDT Table HOOK NTDebugActiveProcess function hook function can determine the PID number, decide whether to release, release in the hook function to call the original function NTDebugActiveProcess. False.HOOK Otherwise, after the success of a direct return all calls DebugActiveProcess procedures will be failure. You can, of course, in accordance with the needs of more system services HOOK function. the same service function of the service in each of the operating system versions are different. following the completion of the annex to compile drivers in WinXP SP2 test environment. or else may lead to the resumption of direct)

下载说明:请别用迅雷下载,失败请重下,重下不扣分!

发表评论

0 个回复

  • InnerHook
    一个简单的 钩子小程序 屏蔽了 鼠标键盘,(A simple hook applet shielding mouse, keyboard,)
    2013-07-24 20:45:28下载
    积分:1
  • Pass-GPK
    过GPK驱动保护,经典,简洁,网上转载,值得一学(Over GPK drive protection, classic, simple, online reprint is worth learning)
    2012-11-07 14:56:14下载
    积分:1
  • hook-kernel-tut-5
    hook kernel tut 5, code in c++, build with wdk
    2013-11-26 12:30:22下载
    积分:1
  • dnf
    地下城盗号收信,绑定信箱收信 帐号密码验证,百分之九十正确(Dungeons hacking receivers, bound-mail recipient account password authentication, ninety percent correct)
    2015-07-19 18:18:54下载
    积分:1
  • hook-kernel-tut-5
    hook kernel tut 5, code in c++, build with wdk
    2013-11-26 12:30:22下载
    积分:1
  • srcUDiskCpyManager_V2013_1012_1653
    防止向U盘中拷贝文件, Hook Win32API, 实现在WinXp下U盘 DLP Hook函数列表:CopyFileExW Win7(x86/x64)下U盘DLP Hook函数列表: CoCreateInstance, IFileOperation::CopyItems IFileOperation::MoveItems IFileOperation::NewItem IFileOperation::RenameItem (U disk to copy files to prevent, Hook Win32API, U disk under WinXp achieve DLP Hook Function list: CopyFileExW Win7 (x86/x64) under U disk DLP Hook Function list: CoCreateInstance, IFileOperation :: CopyItems IFileOperation :: MoveItems IFileOperation: : NewItem IFileOperation :: RenameItem)
    2021-01-27 11:38:35下载
    积分:1
  • guoqudongDLL
    另一种思路注入目标进程的方法 可作为拓宽思维的例子(zhuru dll)
    2013-10-21 15:29:03下载
    积分:1
  • Mouse_Alar
    这个计划听起来一个警报当用户试图移动鼠标。伟大的史努比同事和大鼻子的家庭成员。闹钟可以解除武装,只要按F8键同时转移。(This plan sounds an alert when the user tries to move the mouse. Family members, the great Snoopy colleagues and the big nose. The alarm can be disarmed, press the F8 key at the same time transfer.)
    2013-05-14 09:29:19下载
    积分:1
  • HOOK-API
    简易的API HOOK源码 摘自中国铁道出版社《Windows黑客技术解密与攻防--C语言篇》(The simple API HOOK Open Source From China Railway Press Windows hacking techniques decryption and offensive and defensive- C language papers)
    2013-02-12 21:31:27下载
    积分:1
  • gouzi
    钩子程序,用delphi写的小程序,从中可以学习到钩子原理(Hook procedure, use delphi to write a small program, which can learn to hook the principle of)
    2008-12-17 18:40:13下载
    积分:1
  • 696516资源总数
  • 106648会员总数
  • 8今日下载