04 2022 档案

摘要:Content of Spice Spice for Newbies 阅读全文
posted @ 2022-04-22 10:55 anyboo 阅读(10) 评论(0) 推荐(0) 编辑
摘要:Signed vs unsigned 1 char c = -1; 2 00A81962 mov byte ptr [c],0FFh 3 unsigned char uc = -1; 4 00A81966 mov byte ptr [uc],0FFh 5 6 if (uc == c) 7 00A81 阅读全文
posted @ 2022-04-14 17:07 anyboo 阅读(42) 评论(0) 推荐(0) 编辑
摘要:Chapter 6 I/O system Driver objects and device objects Experiment: Looking at device objects 1 !object \Device 2 !drvobj 3 !devobj 4 !process 0 0 dwm. 阅读全文
posted @ 2022-04-12 17:32 anyboo 阅读(75) 评论(0) 推荐(0) 编辑
摘要:!idt dps nt!KeServiceDescriptorTable dds KiServiceTable dq KiServiceTable ln poi(KiServiceTable + 102 * 4) Hook SSDT(Shadow) Hooking the System Servic 阅读全文
posted @ 2022-04-01 16:13 anyboo 阅读(43) 评论(0) 推荐(0) 编辑
