搜索资源列表
Dll4SVCHost
- 替换由svchost.exe启动的某个系统服务,具体服务由全局变量 ServiceName 决定. 经测试,生成的DLL文件运行完全正常. 测试环境: Windows 2003 Server + Delphi 7.0 代码只实现了一个框架,没有任何实际动作,仅作为学习用.如果你使用本代码 进行了任何扩充和修改,希望您能将代码寄一份给我.
ProgramHook
- 一个WH_SHELL的钩子程序,具体功能是管理应用程序的使用。在使用应用程序之前可以控制其启动和关闭。包含三个文件夹,HookDLL文件夹是全局钩子dll,HookServer文件夹是一个应用程序控制程序,ProgamControl文件夹是delphi编写的应用程序编辑器。
重新启动程序
- 一个简单的病毒程序,使用delphi编写,涉及到系统重新启动等等,-a simple virus, the use of delphi preparation, involving system restart, etc.,
kbh.rar
- DELPHI编写的HOOK API实现DLL全局钩子启动记事本的程序,DELPHI prepared HOOK API to achieve the overall hook DLL procedures start Notepad
police_service
- delphi 编写的后台服务程序, 可以定时重启 系统服务,比如tomcat服务, 服务名和启动规则可以由用户定义 -delphi service program ,restart system service ,user can define rules
etl_check
- 用DELPHI编写的监控ETL任务的脚本,可以通过任务管理定期启动,从而达到监控的目的-Prepared using DELPHI Missions monitoring ETL scr ipts, you can start a regular basis through the Task Manager, so as to achieve the purpose of monitoring
restart
- 类似于QQ的程序出错自动重新启动的DELPHI原代码.-QQ error similar to the procedures of the DELPHI automatically restart the original code.
backdoor_start
- exe借壳启动,点启动按钮启动"测试.exe",该进程借助ie进程在内存中运行,在进程管理器中找不到该进程。(因一直上传不了,加了密码,解压码:123)-exe backdoor start point start button " test. exe" , ie the process with the process running in memory, in the process manager can not find the process. (Not due to
paraent
- 检测进程为否为父进程的DELPHI源码,对于反启动有很好的检测效果-The detection process No parent process DELPHI source, good detection results for anti start
pcname
- Delphi更改计算机名称,改变计算机在网络中的名字,一般修改计算机名称都是在重新启动后才生效,因此测试后请重启电脑看效果。-Delphi change the computer name, change the name of the computer in the network, generally modify the computer name after a system restart to take effect, so the test after you restart t
auto
- Delphi编写一个开机后可自动运行的程序,想当于添加到了快速启动项中,实现开机启动的方法有多种-Delphi to write a boot can be run automatically, want to add items to a fast start to realize there are a variety of ways boot
server
- 用DELPHI开发的*程序,可以实现自己启动,自我复制,隐藏自己,并把收集到的IP地址传送到指定的客户端-trojian program developed by delphi, it s function includes self duplicate, hide, collect the host s ip information
procenext
- VBS和DELPHI写的监视所有WINDOWS系统进程启动及退出的代码。非常好用。-VBS and DELLPHIwrote monitor all WINDOWS system processes start and exit code. Very easy to use.
ime
- DELPHI编程工具写的注入所有WINDOWS系统进程启动及退出的代码。非常好用。-DELPHI programming tools to write all WINDOWS injection system processes start and exit code. Very easy to use.