04 2022 档案
摘要:Content of Spice Spice for Newbies
阅读全文
摘要:Signed vs unsigned 1 char c = -1; 2 00A81962 mov byte ptr [c],0FFh 3 unsigned char uc = -1; 4 00A81966 mov byte ptr [uc],0FFh 5 6 if (uc == c) 7 00A81
阅读全文
摘要:Chapter 6 I/O system Driver objects and device objects Experiment: Looking at device objects 1 !object \Device 2 !drvobj 3 !devobj 4 !process 0 0 dwm.
阅读全文
摘要:!idt dps nt!KeServiceDescriptorTable dds KiServiceTable dq KiServiceTable ln poi(KiServiceTable + 102 * 4) Hook SSDT(Shadow) Hooking the System Servic
阅读全文