文件名称:hideprocess
介绍说明--下载内容均来自于网络,请自行研究使用
KiWaitOutListhead,KiDispatcherReadyListHead,分别是两条阻塞链,一条就绪链表,当线程获得CPU执行的时候,系统分配一个时间片给线程,当发生一次时钟中断就从分配的时间片上减去一个时钟中断的值,如果这个值小于零了也就是时间片用完了,那么这个线程根据其优先级载入到相应的就绪队列末尾。KiDispatcherReadyListHead是一个数组链的头部,在windows 2000中它包含有32个队列,分别对应线程的32个优先级。如果线程因为同步,或者是对外设请求,那么阻塞线程,让出CPU的所有权,加如到阻塞队列里面去。CPU从就绪队列里面,按照优先权的前后,重新调度新的线程的执行。当阻塞队列里面的线程获得所需求的资源,或者是同步完成就又重新加到就绪队列里面等待执行。 -err
(系统自动生成,下载前可以参看下载内容)
下载文件列表
[绕过内核线程调度隐藏进程]_专题
...............................\bh-eu-06-Rutkowska.pdf
...............................\klister-0.4.zip
...............................\phide2
...............................\......\hidecmd.sys
...............................\......\lib
...............................\......\...\catchy32.h
...............................\......\...\catchy32.lib
...............................\......\...\phide2.h
...............................\......\...\phide2.lib
...............................\......\...\pullout.h
...............................\......\...\pullout.lib
...............................\......\src
...............................\......\...\engines
...............................\......\...\.......\catchy
...............................\......\...\.......\......\catchy32.asm
...............................\......\...\.......\......\catchy32.h
...............................\......\...\.......\......\makefile
...............................\......\...\.......\......\optable.inc
...............................\......\...\.......\makefile
...............................\......\...\.......\phide2
...............................\......\...\.......\......\catchy32.h
...............................\......\...\.......\......\internal.h
...............................\......\...\.......\......\makefile
...............................\......\...\.......\......\pe.h
...............................\......\...\.......\......\phide2.c
...............................\......\...\.......\......\phide2.h
...............................\......\...\.......\......\pullout.h
...............................\......\...\.......\......\search.c
...............................\......\...\.......\......\search.h
...............................\......\...\.......\pullout
...............................\......\...\.......\.......\catchy32.h
...............................\......\...\.......\.......\internal.h
...............................\......\...\.......\.......\makefile
...............................\......\...\.......\.......\nt.h
...............................\......\...\.......\.......\pe.h
...............................\......\...\.......\.......\pullout.c
...............................\......\...\.......\.......\pullout.h
...............................\......\...\makefile
...............................\......\...\sample
...............................\......\...\......\buildfre_wxp_x86.err
...............................\......\...\......\buildfre_wxp_x86.log
...............................\......\...\......\buildfre_wxp_x86.wrn
...............................\......\...\......\hidecmd.c
...............................\......\...\......\hidecmd.h
...............................\......\...\......\makefile
...............................\......\...\......\makefile.rar
...............................\......\...\......\objfre_wxp_x86
...............................\......\...\......\..............\i386
...............................\......\...\......\..............\_objects.mac
...............................\......\...\......\phide2.h
...............................\......\...\......\Release
...............................\......\...\......\sources
...............................\......\必看.txt
...............................\Windows2000 内核级进程隐藏、侦测技术[毕业论文].mht
...............................\Xcon2004_tk.pdf
...............................\不用挂钩绕过 Klister 0_4.mht
...............................\内核调度隐藏进程
...............................\................\1.c
...............................\................\buildchk_wnet_x86.err
...............................\................\buildchk_wnet_x86.log
...............................\................\makefile
...............................\................\objchk_wnet_x86
...............................\................\...............\i386
...............................\................\...............\_objects.mac
...............................\................\sources
...............................\................\必看.txt
.....
...............................\bh-eu-06-Rutkowska.pdf
...............................\klister-0.4.zip
...............................\phide2
...............................\......\hidecmd.sys
...............................\......\lib
...............................\......\...\catchy32.h
...............................\......\...\catchy32.lib
...............................\......\...\phide2.h
...............................\......\...\phide2.lib
...............................\......\...\pullout.h
...............................\......\...\pullout.lib
...............................\......\src
...............................\......\...\engines
...............................\......\...\.......\catchy
...............................\......\...\.......\......\catchy32.asm
...............................\......\...\.......\......\catchy32.h
...............................\......\...\.......\......\makefile
...............................\......\...\.......\......\optable.inc
...............................\......\...\.......\makefile
...............................\......\...\.......\phide2
...............................\......\...\.......\......\catchy32.h
...............................\......\...\.......\......\internal.h
...............................\......\...\.......\......\makefile
...............................\......\...\.......\......\pe.h
...............................\......\...\.......\......\phide2.c
...............................\......\...\.......\......\phide2.h
...............................\......\...\.......\......\pullout.h
...............................\......\...\.......\......\search.c
...............................\......\...\.......\......\search.h
...............................\......\...\.......\pullout
...............................\......\...\.......\.......\catchy32.h
...............................\......\...\.......\.......\internal.h
...............................\......\...\.......\.......\makefile
...............................\......\...\.......\.......\nt.h
...............................\......\...\.......\.......\pe.h
...............................\......\...\.......\.......\pullout.c
...............................\......\...\.......\.......\pullout.h
...............................\......\...\makefile
...............................\......\...\sample
...............................\......\...\......\buildfre_wxp_x86.err
...............................\......\...\......\buildfre_wxp_x86.log
...............................\......\...\......\buildfre_wxp_x86.wrn
...............................\......\...\......\hidecmd.c
...............................\......\...\......\hidecmd.h
...............................\......\...\......\makefile
...............................\......\...\......\makefile.rar
...............................\......\...\......\objfre_wxp_x86
...............................\......\...\......\..............\i386
...............................\......\...\......\..............\_objects.mac
...............................\......\...\......\phide2.h
...............................\......\...\......\Release
...............................\......\...\......\sources
...............................\......\必看.txt
...............................\Windows2000 内核级进程隐藏、侦测技术[毕业论文].mht
...............................\Xcon2004_tk.pdf
...............................\不用挂钩绕过 Klister 0_4.mht
...............................\内核调度隐藏进程
...............................\................\1.c
...............................\................\buildchk_wnet_x86.err
...............................\................\buildchk_wnet_x86.log
...............................\................\makefile
...............................\................\objchk_wnet_x86
...............................\................\...............\i386
...............................\................\...............\_objects.mac
...............................\................\sources
...............................\................\必看.txt
.....