能力值:
( LV13,RANK:1760 )
|
-
-
2 楼
f1fK9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6q4P5s2m8x3K9h3k6W2x3o6l9I4x3g2)9J5c8X3q4%4k6i4y4G2L8h3g2Q4x3X3c8%4K9h3&6V1L8%4N6K6i4K6u0V1K9$3g2J5L8X3g2D9i4K6u0V1M7$3g2U0N6i4u0A6N6s2W2Q4x3X3c8V1k6i4k6W2L8r3!0H3L8h3g2F1N6q4)9J5y4X3&6T1M7%4m8Q4x3@1u0Q4x3X3c8Q4x3X3c8Q4x3U0k6Y4N6q4)9K6b7W2)9J5y4X3&6T1M7%4m8Q4x3@1u0p5d9@1!0y4i4K6t1$3L8X3u0K6M7q4)9K6b7W2)9J5k6q4)9J5k6q4)9J5y4X3N6@1i4K6y4n7i4K6t1$3L8X3u0K6M7q4)9K6b7X3S2@1N6s2m8K6i4K6y4m8i4K6u0r3i4K6u0r3k6$3W2@1K9s2g2T1i4K6u0W2j5$3!0E0i4K6u0r3h3X3S2#2d9s2g2A6b7X3g2A6f1$3S2S2c8r3W2S2L8#2)9J5c8V1&6W2N6@1S2A6k6r3g2p5M7X3W2$3k6i4u0q4P5l9`.`. 我基本都汇总了
|
能力值:
( LV12,RANK:243 )
|
-
-
3 楼
安于此生
9c3K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6q4P5s2m8x3K9h3k6W2x3o6l9I4x3g2)9J5c8X3q4%4k6i4y4G2L8h3g2Q4x3X3c8%4K9h3&6V1L8%4N6K6i4K6u0V1K9$3g2J5L8X3g2D9i4K6u0V1M7$3g2U0N6i4u0A6N6s2W2Q4x3X3c8V1k6i4k6W2L8r3!0H3L8h3g2F1N6l9`.`. --> DKOM --> https: ...
大佬666,原来早有人整理了,怪我太晚才看到他的博客 不过大佬你的动态搜索代码太冗长了,而且从性质上来说也是硬编码,我只是分享一下自己写的较简洁的代码
|
能力值:
( LV2,RANK:10 )
|
-
-
4 楼
有 开源的,而且处理的很不错。 你浪费了太多时间了。 你缺少人和你交流把。
|
能力值:
( LV2,RANK:10 )
|
-
-
5 楼
看这里,这个是真正的大佬.里面的代码都是吊吊吊的,不用你再去csdn那种地方找了, 0e1K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6C8K9h3I4D9N6Y4S2C8
嘿嘿
|
能力值:
( LV9,RANK:180 )
|
-
-
6 楼
支持楼主发帖分享
|
能力值:
( LV4,RANK:40 )
|
-
-
7 楼
安于此生
cc9K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6q4P5s2m8x3K9h3k6W2x3o6l9I4x3g2)9J5c8X3q4%4k6i4y4G2L8h3g2Q4x3X3c8%4K9h3&6V1L8%4N6K6i4K6u0V1K9$3g2J5L8X3g2D9i4K6u0V1M7$3g2U0N6i4u0A6N6s2W2Q4x3X3c8V1k6i4k6W2L8r3!0H3L8h3g2F1N6l9`.`. --> DKOM --> https: ...
我以前不明白什么叫做应有尽有,直到看到您的分享
|
能力值:
( LV12,RANK:243 )
|
-
-
8 楼
zaimongli
看这里,这个是真正的大佬.里面的代码都是吊吊吊的,不用你再去csdn那种地方找了,
612K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6C8K9h3I4D9N6Y4S2C8
嘿嘿
感谢大佬的推荐! 我只是把编程当个人兴趣,享受一步步解决困难的过程,直接看别人开源的或许对于专职工作者来说更省事。就比如一道很难的数学题,虽然有详略的答案解析,但是先凭自己本事做出来更有成就感嘛~
|
能力值:
( LV2,RANK:10 )
|
-
-
9 楼
安于此生
797K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6q4P5s2m8x3K9h3k6W2x3o6l9I4x3g2)9J5c8X3q4%4k6i4y4G2L8h3g2Q4x3X3c8%4K9h3&6V1L8%4N6K6i4K6u0V1K9$3g2J5L8X3g2D9i4K6u0V1M7$3g2U0N6i4u0A6N6s2W2Q4x3X3c8V1k6i4k6W2L8r3!0H3L8h3g2F1N6l9`.`. --> DKOM --> https: ...
首先 NewHideDriverEx 也能检测出来的,NewHideDriverEx使用了ObMakeTemporaryObject会对象劫持这是个大记号,并且WIN10下依然会蓝屏(很久才会蓝,因为NewHideDriverEx只处理了seh,那是不够的)
|
能力值:
( LV2,RANK:10 )
|
-
-
10 楼
安于此生
c51K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6q4P5s2m8x3K9h3k6W2x3o6l9I4x3g2)9J5c8X3q4%4k6i4y4G2L8h3g2Q4x3X3c8%4K9h3&6V1L8%4N6K6i4K6u0V1K9$3g2J5L8X3g2D9i4K6u0V1M7$3g2U0N6i4u0A6N6s2W2Q4x3X3c8V1k6i4k6W2L8r3!0H3L8h3g2F1N6l9`.`. --> DKOM --> https: ...
哟,你好。
|
能力值:
( LV8,RANK:130 )
|
-
-
11 楼
王齐
哟,你好。
"NewHideDriverEx使用了ObMakeTemporaryObject会对象劫持这是个大记号" 什么意思
|
能力值:
( LV2,RANK:10 )
|
-
-
12 楼
killpy
"NewHideDriverEx使用了ObMakeTemporaryObject会对象劫持这是个大记号" 什么意思
我也不知道为什么,因为我测试过的,所以才这么说的,使用ObMakeTemporaryObject后,PCHunter64.exe里查看先提示对象劫持
|
能力值:
( LV8,RANK:130 )
|
-
-
13 楼
没有啊 我 按照这个方法隐藏对象后 开pch 扫不到驱动了 也看不到 劫持
|
能力值:
( LV8,RANK:130 )
|
-
-
14 楼
老坛酸菜TM
我也不知道为什么,因为我测试过的,所以才这么说的,使用ObMakeTemporaryObject后,PCHunter64.exe里查看先提示对象劫持
没有啊 我 按照这个方法隐藏对象后 开pch 扫不到驱动了 也看不到 劫持
|
能力值:
( LV2,RANK:10 )
|
-
-
15 楼
win10确实会蓝屏,很久才会蓝屏
|
|
|