- Category:
- Hook api
- Tags:
-
- File Size:
- 9kb
- Update:
- 2015-02-09
- Downloads:
- 0 Times
- Uploaded by:
- yunhaitian
Description: This document describes the use of NT driver to intercept NTAPI to achieve completely hidden files and directories purposes. Under the NT has a file NTDLL.DLL, most NTAPI are in this library package. Find files and directories which achieved an API interface is ZwQueryDirectoryFile, so long as we intercept this API, then the files and directories can be completely hidden!
To Search:
File list (Check if you may need any files):
拦截NT的API实现隐藏文件目录.wps