搜索资源列表
过hs保护的驱动源代码
- 过hs保护的驱动源代码,非常不错哦,现在还是可以使用的,Hs been the protection of the driver source code, very good Oh, now you can use the
killtxdrv.过腾讯读驱动保护内存
- 过腾读驱动保护内存 用于TX的游戏保护模式的,Proton-driven read-off to protect the memory of the Games for the protection of TX mode
ProtectMon
- 驱动开发,根据PID保护进程,HOOK了 SSDT NtOpenProcess函数,至少可以抵御一切R3病毒终结你的进程!!适合新手学习HOOK ssdt的入门研究-Driven development, the protection under the PID process, HOOK the SSDT NtOpenProcess function, at least the end of you against all the process of virus R3!! Suitabl
KillProcessEx
- 用系统底层API,用多种方法结束进程,一般没有被驱动保护的应用程序都能被强制结束掉,代码仅供参考,如有问题,请发邮件给我。-With the system, the underlying API, using a variety of ways the end of the process, generally has not been driven to protect the application can be forced off the end of the code for refe
passTP_ddk
- 自写驱动过游戏TP保护,加载驱动后可用CE调试。-TP had the game since the write driver protection, CE debug available after loading the driver.
NtCreateThread
- 驱动注入线程的源码,有关保护方面的知识,NtCreateThread-Driven into the threads of the source, on the protection of the
DNF
- 过驱动保护只供技术交流对腾讯造成的影响本人不负责-DNF driver protection
code
- 驱动级读写内存。过目前一般保护游戏。如NP等-Driver-level memory read and write. General protection than the current game. NP such as
mini_driver_ddk_np
- 可以过NP保护的驱动源码,极具参考价值。-Can protect the driver over NP source of great reference value.
SSDTHIDE
- 驱动隐藏进程,隐藏指定进程来保护程序. -Drive hidden processes, hidden to protect the procedures specified process.
filesys
- 文件系统过滤驱动 通过截获系统发出的irp 捕获文件操作从而实现对文件的保护-This module contains the code that implements the general purpose sample file system filter driver.
protector_driver
- 利用钩子技术配合驱动来控制进程创建,想学驱动保护的可以下载研究下-With the use of hook-driven technology to control the process of creating, want to learn driving under the protection of study can be downloaded
RootKit_pediy
- 来自看雪的RootKit的学习与研究专题的电子书。 Rootkit是什么?估计很多朋友并不明白,简单的说,Rootkit是一种特殊的恶意软件,它的功能是在安装目标上隐藏自身及指定的文件、进程和网络链接等信息,比较多见到的是Rootkit一般都和木马、后门等其他恶意程序结合使用。Rootkit通过加载特殊的驱动,修改系统内核,进而达到隐藏信息的目的。技术是双刃剑,我们研究它的目的在于,透过我们的研究,用这项技术来保护我们的系统,使我们的系统更加健壮,充分发挥这个技术的正面应用。-RootKit
驱动级保护进程
- 驱动保护进程,隐藏进程,确保进程不会被结束(Driver level hidden process, protection process)
驱动保护
- 易语言驱动保护 很难找 很好用 功能强大(Easy language driver protection is hard to find and easy to use)
DirverProtect
- win7 x64 位系统下用驱动保护进程不被关闭与读写的三种实例。(Three examples of driving and protecting processes not closed and read and write under win7 x64 bit system.)
内核重C源码和成品驱动
- 内核重载 过任意游戏驱动保护源码,目前只重载一个内核。掌握此方法重载多个内核文件可以通杀任意游戏驱动保护和软件HOOK等,大神必备技能,目前只让OD或者CE工具走新内核。WIN7 32系统加载驱动后可以打开OD或CE修改游戏数据了(The kernel is overloaded with an arbitrary game driver protection source, and only one kernel is overloaded at the moment. Mastering t
过tp驱动
- 过TP驱动保护,其他地方找来的,可以参考一下(Over TP drive protection)
无心驱动读写
- 无心驱动保护读写,驱动保护读写可用于过tx检测。(Driver protection read and write can be used for over TX detection)
过NP,VE修改器
- 过NP驱动保护,但是有时候会出三方 不过不耽误我们分析 出三方不用管(Overlooking for game base is illegal)