摘要:
API Hooking (LoadLibrary)IntroductionIf Windows is made to protect against API hooking, Trojan horses would not have effected our systems. I believe it is a loop hole from Microsoft. But from a programmer's point of view, it is a kernel level approach to PE (Portableexecutable) signature modific 阅读全文
posted @ 2012-11-25 21:39
Angelo Lee
阅读(323)
评论(0)
推荐(0)
摘要:
http://msdn.microsoft.com/en-us/library/aa365430(v=vs.85).aspxOpenFile functionHFILE WINAPI OpenFile( _In_ LPCSTR lpFileName, _Out_ LPOFSTRUCT lpReOpenBuff, _In_ UINT uStyle
);
Return valueIf the function succeeds, the return value specifies a file handle to use when performing file I/O. ... 阅读全文
posted @ 2012-11-25 21:23
Angelo Lee
阅读(208)
评论(0)
推荐(0)
浙公网安备 33010602011771号