- 工程开发日期:20080713
- Eric21(我,当年ID是21yu3),mk124,258921 三人合作开发,主力是他们俩,我只是出出主意。
- 为PE文件添加区段,增加DLL加载代码,绕过卡巴斯基主动防御。
- 然后DLL加载驱动,unhook所有ssdt hook及shadow ssdt hook
- 威力非常大的一份代码,当年没有流出是非常明智的。
- 如今win10已经面世,希望能给后来人借鉴的价值。
- 我现在的blog: http://www.eric21.com
-
Notifications
You must be signed in to change notification settings - Fork 30
namjkee/ssdt.Recover.21yu3
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Folders and files
Name | Name | Last commit message | Last commit date | |
---|---|---|---|---|
Repository files navigation
About
绕过卡巴斯基主动防御,加载驱动,unhook所有ssdt hook及shadow ssdt hook
Resources
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published