文件名称:baincheng

介绍说明--下载内容均来自于网络,请自行研究使用

映像劫持VS启动杀软,再谈内核及进程保护,在内核驱动中检测隐藏进程,直接调用NTFS文件驱动检测隐藏文件,植入执行文件穿越软件防火墙-VS start taking images of soft kill, talk about the kernel and process protection, to detect hidden drivers in the kernel process and directly call the NTFS file driver detects hidden files, executable files through the software firewall implantation
(系统自动生成,下载前可以参看下载内容)

下载文件列表

再谈内核及进程保护

..................\Protect

..................\.......\MAKEFILE

..................\.......\objfre

..................\.......\......\i386

..................\.......\......\....\Protect.sys

..................\.......\Protect.c

..................\.......\Protect.dsp

..................\.......\Protect.dsw

..................\.......\SOURCES

在内核驱动中检测隐藏进程

........................\code

........................\....\Release

........................\....\.......\Ring0.sys

........................\....\Ring0.c

........................\....\Ring0.dsp

........................\....\Ring0.dsw

........................\....\Ring0.opt

........................\涉及驱动加载软件

........................\................\Dbgview.exe

........................\................\DrvLoader.exe

映像劫持VS启动杀软

..................\IFEO Hijack

..................\...........\IFEO Hijack.cpp

..................\...........\IFEO Hijack.dsp

..................\...........\IFEO Hijack.dsw

..................\...........\IFEO Hijack.ncb

..................\...........\IFEO Hijack.opt

..................\...........\IFEO Hijack.plg

..................\...........\ReadMe.txt

..................\...........\Release

..................\...........\.......\IFEO Hijack.exe

..................\...........\.......\IFEO Hijack.obj

..................\...........\.......\IFEO Hijack.pch

..................\...........\.......\StdAfx.obj

..................\...........\.......\vc60.idb

..................\...........\StdAfx.cpp

..................\...........\StdAfx.h

植入执行文件穿越软件防火墙

..........................\asm.txt

..........................\Inject

..........................\......\Inject.asm

..........................\insert.txt

..........................\readme.txt

..........................\SERVER

..........................\......\CommonDlg.cpp

..........................\......\RESOURCE.H

..........................\......\SERVER.CPP

..........................\......\SERVER.RC

..........................\Setup

..........................\.....\INJECT.DAT

..........................\.....\RESOURCE.H

..........................\.....\SETUP.C

..........................\.....\SETUP.RC

直接调用NTFS文件驱动检测隐藏文件

................................\ntfsrdsys

................................\.........\main.c

................................\.........\MAKEFILE

................................\.........\ntfsrd.sys

................................\.........\NtWrap.c

................................\.........\NtWrap.h

................................\.........\Sources

................................\ntfsrdusr

................................\.........\main.c

................................\.........\ntfsrdusr.exe

相关说明

  • 本站资源为会员上传分享交流与学习,如有侵犯您的权益,请联系我们删除.
  • 本站是交换下载平台,提供交流渠道,下载内容来自于网络,除下载问题外,其它问题请自行百度更多...
  • 请直接用浏览器下载本站内容,不要使用迅雷之类的下载软件,用WinRAR最新版进行解压.
  • 如果您发现内容无法下载,请稍后再次尝试;或者到消费记录里找到下载记录反馈给我们.
  • 下载后发现下载的内容跟说明不相乎,请到消费记录里找到下载记录反馈给我们,经确认后退回积分.
  • 如下载前有疑问,可以通过点击"提供者"的名字,查看对方的联系方式,联系对方咨询.

相关评论

暂无评论内容.

发表评论

*主  题:
*内  容:
*验 证 码:

源码中国 www.ymcn.org