Welcome![Sign In][Sign Up]
Location:
Search - rootkit detector

Search list

[OS programsvv-2.3-bin

Description: Detector rootkit kernel mode ring0 sys driver
Platform: | Size: 56320 | Author: Zosenko | Hits:

[OS programCsrssWalker

Description: 在Csrss.exe中,保存着所有Win32子系统进程的进程信息,这些信息以链表的形式保存。 正常情况下,每一个新创建的进程都会通知Csrss.exe,Csrss.exe接收这些信息然后保存起来,所以遍历这个链表就可以得到所有Win32子系统进程的信息。首先就是找链表头了,链表头为CsrssRootProcess,在CSRSRV.DLL导出的函数中有对CsrssRootProcess的操作,因此可以通过CSRSRV.DLL的导出函数找到CsrssRootProcess。 通过遍历这个链表就能取得进程信息-using csrss as rootkit detector, full source code included
Platform: | Size: 36864 | Author: Charles Lee | Hits:

[Software Engineeringcmcark_cw.0.2.2.9.12

Description: A rootkit detector that allows you to remove the SSDT hooks maden in the OS kernel.
Platform: | Size: 1481728 | Author: pedrailla | Hits:

[Internet-NetworkRkU_102_source

Description: Rootkit detector to find system hook and user code hooks, hidden driver, hidden files, hidden proccess.
Platform: | Size: 22528 | Author: sis-2kx | Hits:

CodeBus www.codebus.net