搜索资源列表
DarkShell
- 一个远程后门控制软件,它的特点是运行后不在进程里显示。-A remote backdoor control software, which is characterized by a process wherein the display is not running.
NetPatrol
- 提供网络数据包捕获以及主机信息、端口和进程扫描-Provide network packet capture and host information, port and process of scanning
wangjie
- 另外一种网截的 可以注入DLL到一个进程了的软件-Another net can be cut into a DLL to a process of software
portconfig_codes
- 枚举当前系统端口,IP地址,进程名等信息的一个模块代码,虽然当前这样的代码有很多,但是这段是比较典型的,能让你在45分钟内完成一件比较出色系统工作的事情的.-Lists all the os communication port, ip address and process name, Id. Although there re so many codes for this functionality, but my codes is simple and typical. Here it g
xHook
- 这个工具采用的是HOOK进程的winsock API,把一些数据记录下来。 2.1 patch静态文件,即运行前挂钩. 2.2 也是修改IAT,跟1.1一样. 2.3 修改目标函数的前几个字节,跳转到新的函数,但不再调用原始函数,无 实际意义,作者只是做演示? 2.4 这种方法(3.2.3 保存原始函数)很COOL,其中的亮点和难点就是“获取任意 地址的指令长度”。 之前我也想用2.4这种办法,但卡在如何“获取任意地址的指令长度”上面了:(
NirSoft
- 各种网络小工具,包括进程信息的详细查看、数据包的截获,网络参数、IP信息的查看等等。-A variety of network tools, including the process of information detailed view,packet intercepted network parameters IP information View.
NetTest
- 网络编程测试代码,可以实现对网络端口的扫描,列表相关进程对网络的访问,可以对进程实现网络流量的控制。-Network programming test code, you can realize the network port scanning, lists related processes access to the network, you can process network traffic control.
port_-monitor
- 获取指定窗口名,通过窗口名获取进程ID,监测与该进程相关的所有端口的网络数据包并存储。-Specifies the window name, process ID, captured by the window name associated with the process monitoring network packets to all the ports and storage.Specifies the window name, process ID, captured by the