摘要: 1. NTSYSAPI PIMAGE_NT_HEADERS NTAPI RtlImageNtHeader( IN PVOID ModuleAddress ); 阅读全文
posted @ 2011-06-16 02:27 Fan Zhang 阅读(939) 评论(0) 推荐(0)
摘要: bp ntdll!LdrLoadDll 在断点下输入: ed Kd_LDR_MASK ffffffff ed Kd_MM_MASK ffffffff ed Kd_DEFAULT_MASK ffffffff ed ntdll!ShowSnaps 1 ed ntdll!ShowErrors 1 下面是一段log [5e0,5e4] LDR: Recursive DLL load [5e0,5e4] ... 阅读全文
posted @ 2011-06-16 02:12 Fan Zhang 阅读(874) 评论(0) 推荐(0)