- dice 在MFC框架程序的基础上实现的骰子点数的概率统计的小程序
- ldpc_generate LDPC码即低密度奇偶校验码(Low Density Parity Check Code
- Android-Google-Map-APi.doc This document is for the application of Android Map API v1.
- Performance-analysis-of-LMS-in-Real-Time Its a Labview implementation of Adaptive control algorithms for process plants
- A-reduced-complexity-scheme-for-carrier As each user in OFDMA based IEEE 802.16e network has different carrier frequencies
- STM32 for I2C+USART STM32的 I2C / USART 驱动
文件名称:SDTRestore
介绍说明--下载内容来自于网络,使用问题请自行百度
Win32 Kernel Rootkits modify the behaviour of the system by Kernel Native API hooking. This technique is typically implemented by modifying the ServiceTable entries in the Service Descr iptor Table (SDT). Such modification ensures that a replacement (hook) function installed by a rootkit is called prior to the original native API. The replacement function usually calls the original native API and modifies the output before returning the results to the user-space program. This technique allows kernel rootkits to hide files, processes, and to prevent process termination.
This proof-of-concept tool demonstrates the possibility of defeating such rootkits by removing Kernel Native APIs hooks and restoring the ServiceTable entries back to their original state.
This proof-of-concept tool demonstrates the possibility of defeating such rootkits by removing Kernel Native APIs hooks and restoring the ServiceTable entries back to their original state.
相关搜索: rootkit
hide rootkit
(系统自动生成,下载前可以参看下载内容)
下载文件列表
SDTRestore/compile.bat
SDTRestore/SDTrestore.cpp
SDTRestore
SDTRestore/SDTrestore.cpp
SDTRestore
1999-2046 搜珍网 All Rights Reserved.
本站作为网络服务提供者,仅为网络服务对象提供信息存储空间,仅对用户上载内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。
