文件名称:RK_ALL_HOOK
介绍说明--下载内容均来自于网络,请自行研究使用
当今WINDOWS系统下所有rootkit比较流行的HOOK方式,即使被主动hips查杀,也绝对具有学习的价值-WINDOWS system of today
(系统自动生成,下载前可以参看下载内容)
下载文件列表
RK_ALL_HOOK
...........\IDTHook
...........\.......\HookIDT.c
...........\.......\IDTHook.vcproj
...........\MAKEFILE
...........\mysockets.c
...........\NtInlineHook
...........\............\InlineHook.c
...........\............\MAKEFILE
...........\............\NtInlineHook.vcproj
...........\............\SOURCES
...........\............\ssdt.c
...........\............\ssdt.h
...........\PortHide.h
...........\pthide.cpp
...........\reghide.c
...........\reghide.h
...........\rkhide.c
...........\rkhide.h
...........\RK_HIDE
...........\.......\RK_HIDE.vcproj
...........\scirpt_for_windbg_ssdt.txt
...........\SOURCES
...........\SSDT_HOOK
...........\.........\main.c
...........\.........\main.h
...........\.........\MAKEFILE
...........\.........\SOURCES
...........\.........\ssdt.c
...........\.........\ssdt.h
...........\.........\SSDT_HOOK.vcproj
...........\SysEnterHook
...........\............\GetOpcodeSize.c
...........\............\GetOpCodeSize.h
...........\............\SysEnter.c
...........\............\SysEnterHook.vcproj
...........\tcpioctl.h
...........\IDTHook
...........\.......\HookIDT.c
...........\.......\IDTHook.vcproj
...........\MAKEFILE
...........\mysockets.c
...........\NtInlineHook
...........\............\InlineHook.c
...........\............\MAKEFILE
...........\............\NtInlineHook.vcproj
...........\............\SOURCES
...........\............\ssdt.c
...........\............\ssdt.h
...........\PortHide.h
...........\pthide.cpp
...........\reghide.c
...........\reghide.h
...........\rkhide.c
...........\rkhide.h
...........\RK_HIDE
...........\.......\RK_HIDE.vcproj
...........\scirpt_for_windbg_ssdt.txt
...........\SOURCES
...........\SSDT_HOOK
...........\.........\main.c
...........\.........\main.h
...........\.........\MAKEFILE
...........\.........\SOURCES
...........\.........\ssdt.c
...........\.........\ssdt.h
...........\.........\SSDT_HOOK.vcproj
...........\SysEnterHook
...........\............\GetOpcodeSize.c
...........\............\GetOpCodeSize.h
...........\............\SysEnter.c
...........\............\SysEnterHook.vcproj
...........\tcpioctl.h