反跟踪技术

IsDebuggerPresent

NtQueryInformationProcess获得PEB

NtGlobalFlag

ThreadHideFromDebugger

windows user mode debugging internals;windows native debugging internals; kernel user-mode debugging support

openrce.org

http://www.reactos.org/

GetForeGroundWindow

posted @ 2014-08-03 15:35  anjsxz  阅读(254)  评论(0编辑  收藏  举报