文件名称:dvKrnlData
- 所属分类:
- 驱动编程
- 资源属性:
- [Windows] [Visual C] [源码]
- 上传时间:
- 2008-10-13
- 文件大小:
- 53.89kb
- 下载次数:
- 0次
- 提 供 者:
- 左*
- 相关连接:
- 无
- 下载说明:
- 别用迅雷下载,失败请重下,重下不扣分!
介绍说明--下载内容均来自于网络,请自行研究使用
该代码为我学习winnt内核时所写,主要功能是在ring3下通过DeviceIoControl与驱动进行通信,获取内核的数据以及sdt,idt信息等。并实现了hook NtQuerySystemInformation函数来实现进程隐藏的功能-The code for the kernel, I am learning winnt wrote, Its main function is in ring3 through DeviceIoControl communication with the driver. access to the kernel and sdt data, the information loop. And the achievement of the hook function to achieve NtQuerySystemInformation implicit process possession of the function
(系统自动生成,下载前可以参看下载内容)
下载文件列表
压缩包 : 45665990dvkrnldata.rar 列表 dvKrnlData\driver\pch.h dvKrnlData\driver\dvKrnlData.c dvKrnlData\driver\dvKrnlData.h dvKrnlData\driver\dvKrnlData.ctl dvKrnlData\driver\HookFun.c dvKrnlData\driver\dvKrnlData.rc dvKrnlData\driver\makefile dvKrnlData\driver\dvKrnlData.dsp dvKrnlData\driver\dvKrnlData.aps dvKrnlData\driver\HookFun.h dvKrnlData\driver\dvKrnlData.plg dvKrnlData\driver\debug.c dvKrnlData\driver\sources dvKrnlData\driver dvKrnlData\dirs dvKrnlData\dvKrnlData.opt dvKrnlData\ReadMe.htm dvKrnlData\dvKrnlDataVars.xml dvKrnlData\intrface.h dvKrnlData\dvKrnlData.ncb dvKrnlData\KrnlDataClient\KrnlDataClient.dsp dvKrnlData\KrnlDataClient\StdAfx.cpp dvKrnlData\KrnlDataClient\ReadMe.txt dvKrnlData\KrnlDataClient\StdAfx.h dvKrnlData\KrnlDataClient\KrnlDataClient.cpp dvKrnlData\KrnlDataClient\KrnlDataClient.plg dvKrnlData\KrnlDataClient dvKrnlData\dvKrnlData.dsw dvKrnlData