搜索资源列表
RESSDTEX
- reset 系统SSDT表,恢复被其他驱动hook修改的函数-SSDT table reset the system, restore the hook to modify the function of other drivers
ProtectSystemDriver
- ProtectSystemDriver 一个自保护驱动 SSDT实现-ProtectSystemDriver SSDT achieve a self-protection drive
hookSSDT
- 关于恢复hook ssdt的源码,可以过一般的游戏保护-Recovery hook ssdt on the source, can be protected over most games
MzfHips
- 一个采用ssdt hook技术实现的hips,驱动使用ddk编译,应用层使用VC6.0编写的。-A technology used ssdt hook the hips, drive to use ddk compiler, written in the application layer using VC6.0.
HookShadowSSDT
- HookShadowSSDT SSDT钩子-HookShadowSSDT HookShadowSSDT
SecTools
- 系统辅助工具源码,大部分功能在R3下实现,只有SSDT恢复通过驱动实现-System aids source, to achieve most of the features in R3, only achieved through the drive to restore SSDT
SSDTHOOK
- 简单的SSDT的Hook,可以让想学习SSDT HOOK的朋友们学习学习。-The simple SSDT Hook, you can make friends want to learn SSDT HOOK learn to learn.
SSDTRecovery
- 简单的SSDT ring0级恢复,方法是导出SSDT表最原始的位置,记录下来,然后打开程序对比其他进程是否更改SSDT位置,如果更改了,则用原始SSDT覆盖。-Simple SSDT ring0-level recovery method is to export the location of the most original SSDT table, record, and then open the program compared to other process is to chang
hkjklkkk
- SSDT挂钩_基于Windows内核的RootKit技术样本-SSDT hooks _ Windows kernel RootKit technology based sample
ibtHook
- SSDT Hook & ibt Hook Import
RestoreShadowSource
- SSDT恢复源代码,是学习SSDTHOOK的参考资料,可以应用于外挂反调试学习当中-SSDT recover the source code, is to learn SSDTHOOK reference, can be applied to study which external anti-debugging
2012RESSDT
- SSDT,一个值得学习的源码,我就不介绍了,好东西自然值得我们的关注.--this thing, everyone should know, I do not introduced, the natural good things worthy of our attention.
SSDTviewer
- ssdt恢复的。可以恢复被hook的ssdt,达到过游戏保护的功能-ssdt recovery
MSSDT
- 修改Windows系统服务描述符表SSDT的C代码-To modify the Windows system service descr iptor table SSDT
gh0st3.6_src-Inject
- gh0st原版去SSDT,注入进程启动服务。可绕过很多杀软的主动防御-gh0st original deleted SSDT, the injection process to start the service. Can bypass a lot of soft kill active defense
dog-technology-analysis
- 机器狗新变种使用了一些流行的技术,包含了修复 SSDT Hook 、修复 FSDHook 、并对一些系统还原软件进行有针对的 Hook ,使能达到突破还原软件保 护的目的。做了那么多,最终目的还是下载大量的木马到用户的系统上。-The machine dog new varieties used some of the more popular technology, including the repair SSDT Hook, repair FSDHook, and for some sys
zmpidrive
- 通过修改ssdt表 hook掉ZwTerminateProcessZwLoadDriver以及ZwSetSystemInformation 是一份比较简单易读的驱动程序入门源码 是zmpi软件的进程防护拦截模块-By modifying the SSDT hook ZwTerminateProcess ZwLoadDriver and ZwSetSystemInformation Is a relatively simple driver entry source.
Rootkit-V0.1
- 某ROOTKIT 的源码,运用了各种SSDT HOOK以及INLINE HOOK,可躲过大部分工具检测-A ROOTKIT source, using the SSDT HOOK HOOK INLINE, can escape most of the tools to detect
SSDT_Patching
- this is ssdt hooking
driver
- 易语言驱动源码模版.对ssdt hook 的处理-Yi language driver source code templates. SSDT hook handle