进程隐藏--通过直接修改内核实现

上传者: haohaozhanghao | 上传时间: 2021-08-25 16:32:14 | 文件大小: 676KB | 文件类型: RAR
文件中包含内核驱动文件及代码、应用层演示程序及代码。实现了直接操作内核对象从而实现进程的隐藏即DKOM方式

文件下载

资源详情

[{"title":"( 41 个子文件 676KB ) 进程隐藏--通过直接修改内核实现","children":[{"title":"zy","children":[{"title":"驱动程序","children":[{"title":"Sys","children":[{"title":"buildchk_wxp_x86.log <span style='color:#111;'> 2.49KB </span>","children":null,"spread":false},{"title":"Rootkit.c <span style='color:#111;'> 7.68KB </span>","children":null,"spread":false},{"title":"buildchk.log <span style='color:#111;'> 1.02KB </span>","children":null,"spread":false},{"title":"Debug","children":[{"title":"vc60.pdb <span style='color:#111;'> 28.00KB </span>","children":null,"spread":false},{"title":"vc60.idb <span style='color:#111;'> 33.00KB </span>","children":null,"spread":false}],"spread":true},{"title":"MAKEFILE <span style='color:#111;'> 267B </span>","children":null,"spread":false},{"title":"SOURCES <span style='color:#111;'> 82B </span>","children":null,"spread":false},{"title":"objchk_wxp_x86","children":[{"title":"i386","children":[{"title":"rootkit.obj <span style='color:#111;'> 80.53KB </span>","children":null,"spread":false},{"title":"_objects.mac <span style='color:#111;'> 227B </span>","children":null,"spread":false}],"spread":true}],"spread":true},{"title":"objchk","children":[{"title":"i386","children":[{"title":"rootkit.obj <span style='color:#111;'> 39.79KB </span>","children":null,"spread":false},{"title":"processname.obj <span style='color:#111;'> 35.00KB </span>","children":null,"spread":false}],"spread":true}],"spread":true},{"title":"Rootkit.plg <span style='color:#111;'> 1.24KB </span>","children":null,"spread":false},{"title":"Rootkit.dsw <span style='color:#111;'> 539B </span>","children":null,"spread":false},{"title":"Rootkit.opt <span style='color:#111;'> 52.50KB </span>","children":null,"spread":false},{"title":"Rootkit.ncb <span style='color:#111;'> 41.00KB </span>","children":null,"spread":false},{"title":"obj","children":[{"title":"_objects.mac <span style='color:#111;'> 229B </span>","children":null,"spread":false}],"spread":false},{"title":"Rootkit.dsp <span style='color:#111;'> 3.33KB </span>","children":null,"spread":false}],"spread":false},{"title":"exe","children":[{"title":"i386","children":[{"title":"msdirectx.pdb <span style='color:#111;'> 123.00KB </span>","children":null,"spread":false},{"title":"msdirectx.sys <span style='color:#111;'> 3.25KB </span>","children":null,"spread":false}],"spread":true}],"spread":true}],"spread":true},{"title":"test5","children":[{"title":"Debug","children":[{"title":"test5.bsc <span style='color:#111;'> 1.04MB </span>","children":null,"spread":false},{"title":"vc60.pdb <span style='color:#111;'> 132.00KB </span>","children":null,"spread":false},{"title":"test5.ilk <span style='color:#111;'> 235.04KB </span>","children":null,"spread":false},{"title":"test5.pdb <span style='color:#111;'> 521.00KB </span>","children":null,"spread":false},{"title":"vc60.idb <span style='color:#111;'> 137.00KB </span>","children":null,"spread":false},{"title":"test5.exe <span style='color:#111;'> 184.04KB </span>","children":null,"spread":false},{"title":"StdAfx.obj <span style='color:#111;'> 1.91KB </span>","children":null,"spread":false},{"title":"test5.obj <span style='color:#111;'> 35.86KB </span>","children":null,"spread":false},{"title":"test5.pch <span style='color:#111;'> 326.95KB </span>","children":null,"spread":false},{"title":"msdirectx.sys <span style='color:#111;'> 3.38KB </span>","children":null,"spread":false},{"title":"test5.sbr <span style='color:#111;'> 0B </span>","children":null,"spread":false},{"title":"StdAfx.sbr <span style='color:#111;'> 4.02KB </span>","children":null,"spread":false}],"spread":false},{"title":"test5.cpp <span style='color:#111;'> 8.13KB </span>","children":null,"spread":false},{"title":"test5.dsp <span style='color:#111;'> 4.42KB </span>","children":null,"spread":false},{"title":"test5.ncb <span style='color:#111;'> 73.00KB </span>","children":null,"spread":false},{"title":"ReadMe.txt <span style='color:#111;'> 1.17KB </span>","children":null,"spread":false},{"title":"test5.opt <span style='color:#111;'> 52.50KB </span>","children":null,"spread":false},{"title":"test5.dsw <span style='color:#111;'> 516B </span>","children":null,"spread":false},{"title":"test5.plg <span style='color:#111;'> 1.24KB </span>","children":null,"spread":false},{"title":"msdirectx.sys <span style='color:#111;'> 3.38KB </span>","children":null,"spread":false},{"title":"StdAfx.cpp <span style='color:#111;'> 292B </span>","children":null,"spread":false},{"title":"StdAfx.h <span style='color:#111;'> 769B </span>","children":null,"spread":false}],"spread":false}],"spread":true}],"spread":true}]

评论信息

  • liyuanhonghappy :
    真是没有运行成功哇 lz在看看
    2013-12-19
  • xiaoxinghehe :
    win7没运行成功
    2013-01-08
  • tc_hmily :
    好像运行没有成功,映射物理内存失败,总是返回没有权限~~·
    2012-11-27

免责申明

【只为小站】的资源来自网友分享,仅供学习研究,请务必在下载后24小时内给予删除,不得用于其他任何用途,否则后果自负。基于互联网的特殊性,【只为小站】 无法对用户传输的作品、信息、内容的权属或合法性、合规性、真实性、科学性、完整权、有效性等进行实质审查;无论 【只为小站】 经营者是否已进行审查,用户均应自行承担因其传输的作品、信息、内容而可能或已经产生的侵权或权属纠纷等法律责任。
本站所有资源不代表本站的观点或立场,基于网友分享,根据中国法律《信息网络传播权保护条例》第二十二条之规定,若资源存在侵权或相关问题请联系本站客服人员,zhiweidada#qq.com,请把#换成@,本站将给予最大的支持与配合,做到及时反馈和处理。关于更多版权及免责申明参见 版权及免责申明