搜索资源列表
driver
- 过ntopenprocess 内核层的驱动保护-Over ntopenprocess ntopenprocess ntopenprocess ntopenprocess ntopenprocess ntopenprocess ntopenprocess ntopenprocess
ProtectMon
- 驱动开发,根据PID保护进程,HOOK了 SSDT NtOpenProcess函数,至少可以抵御一切R3病毒终结你的进程!!适合新手学习HOOK ssdt的入门研究-Driven development, the protection under the PID process, HOOK the SSDT NtOpenProcess function, at least the end of you against all the process of virus R3!! Suitabl
hook
- 保护进程 不被读取打开 hook NtOpenProcess的代码-ntOpenProcess hook instance
antiTX
- 1.恢复shadow ssdt 2.恢复 NtReadVirtualMemory NtWriteVirtualMemory NtOpenProcess NtOpenThread KiAttachProce-1.恢复shadow ssdt 2.恢复 NtReadVirtualMemory NtWriteVirtualMemory NtOpenProcess NtOpenThread KiAttachProcess
SSTDHOOK
- 完整无错VC++编程成功绕过NtOpenProcess和NtOpenThread驱动程序.运行环境是WINXP SP3+VC6.0. -The complete no wrong VC++ programming success to bypass NtOpenProcess, and NtOpenThread driver operating environment WINXP SP3+VC6.0.
Tp-NtOpenProcess
- 用于初学者学习过驱动保护实例 过某p之NtOpenProce-For beginners to learn drive protection case NtOpenProcess a P a p
Hook_SSDT_NtOpenProcess
- Hook SSDT NtOpenProcess,驱动实现Hook内核函数。- Hook SSDT NtOpenProcess, drive to achieve Hook kernel function.