文件名称:SDT_UnHook_Code
-
所属分类:
- 标签属性:
- 上传时间:2015-06-17
-
文件大小:651.86kb
-
已下载:0次
-
提 供 者:
-
相关连接:无下载说明:别用迅雷下载,失败请重下,重下不扣分!
介绍说明--下载内容来自于网络,使用问题请自行百度
通过读取ntoskrnl.exe文件的导出函数API相对虚拟地址,找到ntoskrnl.exe在内存中的基地址,计算各个API真正的起始地址,比较SSDT表中对应的API地址,不同则去掉SSDT钩子的驱动代码-First,the driver code acquires the RVA of APIs the export table of ntoskrnl.exe.Second,program acquires the base address of ntoskrnl.exe loaded into memory to compute the real memory addresses of APIs. Third, program gets rid of hooks by comparing real addresses with items in SSDT table.
(系统自动生成,下载前可以参看下载内容)
下载文件列表
SDT_UnHook_Code/EmptyDriver2/buildchk_wlh_x86.log
SDT_UnHook_Code/EmptyDriver2/buildchk_wlh_x86.wrn
SDT_UnHook_Code/EmptyDriver2/buildchk_wxp_x86.log
SDT_UnHook_Code/EmptyDriver2/buildfre_wxp_x86.log
SDT_UnHook_Code/EmptyDriver2/BuildLog.htm
SDT_UnHook_Code/EmptyDriver2/ddkbldenv.cmd
SDT_UnHook_Code/EmptyDriver2/ddkpostbld.cmd
SDT_UnHook_Code/EmptyDriver2/ddkprebld.cmd
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.vsprops
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj.20110611-1053.sfx.user
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj.PC-201004210949.sfx.user
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj.sfx-PC.sfx.user
SDT_UnHook_Code/EmptyDriver2/makefile
SDT_UnHook_Code/EmptyDriver2/pe.h
SDT_UnHook_Code/EmptyDriver2/RESSDT.c
SDT_UnHook_Code/EmptyDriver2/sources
SDT_UnHook_Code/EmptyDriver2.ncb
SDT_UnHook_Code/EmptyDriver2.sln
SDT_UnHook_Code/EmptyDriver2.suo
SDT_UnHook_Code/makefile
SDT_UnHook_Code/sources
SDT_UnHook_Code/EmptyDriver2/objchk_wxp_x86/i386
SDT_UnHook_Code/EmptyDriver2/objchk_wxp_x86
SDT_UnHook_Code/EmptyDriver2
SDT_UnHook_Code
SDT_UnHook_Code/EmptyDriver2/buildchk_wlh_x86.wrn
SDT_UnHook_Code/EmptyDriver2/buildchk_wxp_x86.log
SDT_UnHook_Code/EmptyDriver2/buildfre_wxp_x86.log
SDT_UnHook_Code/EmptyDriver2/BuildLog.htm
SDT_UnHook_Code/EmptyDriver2/ddkbldenv.cmd
SDT_UnHook_Code/EmptyDriver2/ddkpostbld.cmd
SDT_UnHook_Code/EmptyDriver2/ddkprebld.cmd
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.vsprops
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj.20110611-1053.sfx.user
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj.PC-201004210949.sfx.user
SDT_UnHook_Code/EmptyDriver2/EmptyDriver2.WLH.vcproj.sfx-PC.sfx.user
SDT_UnHook_Code/EmptyDriver2/makefile
SDT_UnHook_Code/EmptyDriver2/pe.h
SDT_UnHook_Code/EmptyDriver2/RESSDT.c
SDT_UnHook_Code/EmptyDriver2/sources
SDT_UnHook_Code/EmptyDriver2.ncb
SDT_UnHook_Code/EmptyDriver2.sln
SDT_UnHook_Code/EmptyDriver2.suo
SDT_UnHook_Code/makefile
SDT_UnHook_Code/sources
SDT_UnHook_Code/EmptyDriver2/objchk_wxp_x86/i386
SDT_UnHook_Code/EmptyDriver2/objchk_wxp_x86
SDT_UnHook_Code/EmptyDriver2
SDT_UnHook_Code
1999-2046 搜珍网 All Rights Reserved.
本站作为网络服务提供者,仅为网络服务对象提供信息存储空间,仅对用户上载内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。
