文件名称:PRMonitor

  • 所属分类:
  • 钩子与API截获
  • 资源属性:
  • [Windows] [Visual C] [源码]
  • 上传时间:
  • 2012-11-26
  • 文件大小:
  • 80kb
  • 下载次数:
  • 0次
  • 提 供 者:
  • zhen****
  • 相关连接:
  • 下载说明:
  • 别用迅雷下载,失败请重下,重下不扣分!

介绍说明--下载内容均来自于网络,请自行研究使用

这是一个非常好的内核级HOOK API的例子,想看看效果里面的bin文件夹可以有编译好的程序,其中内核监视没有实现,进程和注册表监视已经完成。这个代码绝对可以成功编译,因为hookzwcreateprocess里的代码是驱动设备程序的,所以编译环境的设置比较复杂,所以在这个压缩包里也包含了一个小教程,教你去搭建vc 6.0中开发驱动设备程序的环境,并且带了个样本。声明:这个程序运行XP下,在2000下会造成蓝屏-This is a very good kernel-level HOOK API examples, I would like to look at the effects inside the bin folder can be compiled procedures, which did not materialize to monitor the kernel, processes and registry monitoring has been completed. This code is absolutely able to successfully compile, because the code is hookzwcreateprocess in process-driven equipment, so the compiler set up the environment more complex, so in this compression bag also contains a small tutorial to teach you to build in vc 6.0 device driver development program environment, and带了个samples. Statement: This program runs under XP, in 2000 will cause a blue screen
(系统自动生成,下载前可以参看下载内容)

下载文件列表

PRMonitor

.........\bin

.........\...\PRMonitor.exe

.........\...\PRMonitor.sys

.........\src

.........\...\hookzwcreateprocess

.........\...\...................\buildchk.log

.........\...\...................\dbghelp.h

.........\...\...................\ddkbuild.bat

.........\...\...................\hookzwcreateprocess.c

.........\...\...................\hookzwcreateprocess.dsp

.........\...\...................\hookzwcreateprocess.dsw

.........\...\...................\hookzwcreateprocess.h

.........\...\...................\hookzwcreateprocess.ncb

.........\...\...................\hookzwcreateprocess.plg

.........\...\...................\makefile

.........\...\...................\obj

.........\...\...................\...\_objects.mac

.........\...\...................\objchk

.........\...\...................\......\i386

.........\...\...................\readme.txt

.........\...\...................\sources

.........\...\PRMonitor

.........\...\.........\Debug

.........\...\.........\Dlg.res

.........\...\.........\PRMDlg.aps

.........\...\.........\PRMDlg.rc

.........\...\.........\PRMonitor.cpp

.........\...\.........\PRMonitor.dsp

.........\...\.........\PRMonitor.dsw

.........\...\.........\PRMonitor.ncb

.........\...\.........\PRMonitor.plg

.........\...\.........\resource.h



.........\vc 6.0中开发驱动设备程序配置方法.txt

.........\样本

.........\....\DIRS

.........\....\HelloDriver

.........\....\...........\BuildDriver.bat

.........\....\...........\HelloWDM.c

.........\....\...........\MAKEFILE

.........\....\...........\sources

.........\....\...........\Test.dsp

.........\....\...........\Test.dsw

.........\....\...........\Test.plg

.........\....\文件说明.txt

相关说明

  • 本站资源为会员上传分享交流与学习,如有侵犯您的权益,请联系我们删除.
  • 本站是交换下载平台,提供交流渠道,下载内容来自于网络,除下载问题外,其它问题请自行百度更多...
  • 请直接用浏览器下载本站内容,不要使用迅雷之类的下载软件,用WinRAR最新版进行解压.
  • 如果您发现内容无法下载,请稍后再次尝试;或者到消费记录里找到下载记录反馈给我们.
  • 下载后发现下载的内容跟说明不相乎,请到消费记录里找到下载记录反馈给我们,经确认后退回积分.
  • 如下载前有疑问,可以通过点击"提供者"的名字,查看对方的联系方式,联系对方咨询.

相关评论

暂无评论内容.

发表评论

*主  题:
*内  容:
*验 证 码:

源码中国 www.ymcn.org