dvKrnlData

所属分类:驱动编程
开发工具:Visual C++
文件大小:54KB
下载次数:226
上传日期:2006-09-20 16:10:21
上 传 者windknown
说明:  该代码为我学习winnt内核时所写,主要功能是在ring3下通过DeviceIoControl与驱动进行通信,获取内核的数据以及sdt,idt信息等。并实现了hook NtQuerySystemInformation函数来实现进程隐藏的功能
(The code for the kernel, I am learning winnt wrote, Its main function is in ring3 through DeviceIoControl communication with the driver. access to the kernel and sdt data, the information loop. And the achievement of the hook function to achieve NtQuerySystemInformation implicit process possession of the function)

文件列表:
dvKrnlData\driver\pch.h (979, 2006-09-18)
dvKrnlData\driver\dvKrnlData.c (24947, 2006-09-19)
dvKrnlData\driver\dvKrnlData.h (4952, 2006-09-19)
dvKrnlData\driver\dvKrnlData.ctl (49, 2006-09-12)
dvKrnlData\driver\HookFun.c (5172, 2006-09-19)
dvKrnlData\driver\dvKrnlData.rc (1095, 2006-09-12)
dvKrnlData\driver\makefile (267, 2006-09-12)
dvKrnlData\driver\dvKrnlData.dsp (6750, 2006-09-19)
dvKrnlData\driver\dvKrnlData.aps (36152, 2006-09-12)
dvKrnlData\driver\HookFun.h (4439, 2006-09-19)
dvKrnlData\driver\dvKrnlData.plg (256, 2006-09-19)
dvKrnlData\driver\debug.c (14216, 2006-09-12)
dvKrnlData\driver\sources (712, 2006-09-12)
dvKrnlData\driver (0, 2006-09-12)
dvKrnlData\dirs (21, 2006-09-12)
dvKrnlData\dvKrnlData.opt (61952, 2006-09-20)
dvKrnlData\dvKrnlDataVars.xml (7045, 2006-09-12)
dvKrnlData\intrface.h (3043, 2006-09-19)
dvKrnlData\dvKrnlData.ncb (99328, 2006-09-20)
dvKrnlData\KrnlDataClient\KrnlDataClient.dsp (4722, 2006-09-14)
dvKrnlData\KrnlDataClient\StdAfx.cpp (301, 2006-09-12)
dvKrnlData\KrnlDataClient\StdAfx.h (667, 2006-09-13)
dvKrnlData\KrnlDataClient\KrnlDataClient.cpp (11349, 2006-09-19)
dvKrnlData\KrnlDataClient\KrnlDataClient.plg (262, 2006-09-19)
dvKrnlData\KrnlDataClient (0, 2006-09-12)
dvKrnlData\dvKrnlData.dsw (768, 2006-09-12)
dvKrnlData (0, 2006-09-12)

近期下载者

相关文件


收藏者