搜索资源列表
-
0下载:
驱动开发,根据PID保护进程,HOOK了 SSDT
NtOpenProcess函数,至少可以抵御一切R3病毒终结你的进程!!适合新手学习HOOK ssdt的入门研究-Driven development, the protection under the PID process, HOOK the SSDT NtOpenProcess function, at least the end of you against all the process of virus R3!! Suitabl
-
-
0下载:
1.恢复shadow ssdt
2.恢复
NtReadVirtualMemory
NtWriteVirtualMemory
NtOpenProcess
NtOpenThread
KiAttachProce-1.恢复shadow ssdt
2.恢复
NtReadVirtualMemory
NtWriteVirtualMemory
NtOpenProcess
NtOpenThread
KiAttachProcess
-
-
1下载:
Hook SSDT NtOpenProcess,驱动实现Hook内核函数。-
Hook SSDT NtOpenProcess, drive to achieve Hook kernel function.
-