• <ins id="pjuwb"></ins>
    <blockquote id="pjuwb"><pre id="pjuwb"></pre></blockquote>
    <noscript id="pjuwb"></noscript>
          <sup id="pjuwb"><pre id="pjuwb"></pre></sup>
            <dd id="pjuwb"></dd>
            <abbr id="pjuwb"></abbr>

            S.l.e!ep.¢%

            像打了激速一樣,以四倍的速度運(yùn)轉(zhuǎn),開心的工作
            簡(jiǎn)單、開放、平等的公司文化;尊重個(gè)性、自由與個(gè)人價(jià)值;
            posts - 1098, comments - 335, trackbacks - 0, articles - 1
              C++博客 :: 首頁(yè) :: 新隨筆 :: 聯(lián)系 :: 聚合  :: 管理

            修改IAT實(shí)現(xiàn)API HOOK

            Posted on 2010-07-01 14:57 S.l.e!ep.¢% 閱讀(683) 評(píng)論(0)  編輯 收藏 引用 所屬分類: RootKit
            Robinh00d @ 2006-05-10 16:35

            //修改IAT實(shí)現(xiàn)本進(jìn)程API HOOK
            //coded by robinh00d*inh4ss*<p0prxx@gmail.com>
            //QQ:530222815
            //MSN:Robinh00d@263.net
            // 參考了《Hooking Windows API》By Holy_Father From 29A#7
            #include <stdio.h>
            #include <windows.h>
            #include <Dbghelp.h>

            #pragma comment(lib,"Dbghelp.lib")

            /************************************************************/
            char *szHookModName = "USER32.dll" ;
            char *szHookFunName?= "MessageBoxA" ;
            char *szModName = NULL ;
            char *szHacked = "MessageBoxA() has been hooked!" ;
            DWORD dwHookFun ;
            DWORD dwHookApiAddr ;
            DWORD *dwCurAddr ;
            DWORD dwOldProtect ;
            PIMAGE_IMPORT_DESCRIPTOR pImportDesc ;
            PIMAGE_THUNK_DATA32?pImageThunkData ;
            MEMORY_BASIC_INFORMATION mbi ;
            ULONG uSize ;
            /************************************************************/

            void Hooked()
            {
            ?__asm
            ?{
            ??mov? esp,ebp
            ??push szHacked
            ??pop? DWORD PTR [ebp+12]
            ??pop? ebp
            ??jmp dwHookApiAddr
            ?}
            }

            int WINAPI WinMain(HINSTANCE hInstance, HINSTANCE hPrevInstance, LPSTR lpCmdLine, int nShowCmd)
            {
            ?HMODULE hUser32 = LoadLibrary(szHookModName) ;
            ?
            ?if (hUser32 == NULL)
            ?{
            ??printf("Load User32.dll failed!\n") ;
            ??return -1 ;
            ?}
            ?dwHookFun = (DWORD)Hooked ;

            ?dwHookApiAddr = (DWORD)GetProcAddress(hUser32,szHookFunName) ;

            ?pImportDesc = (PIMAGE_IMPORT_DESCRIPTOR)ImageDirectoryEntryToData(hInstance,
            ?????????????????TRUE,
            ?????????????????IMAGE_DIRECTORY_ENTRY_IMPORT,
            ?????????????????&uSize) ;
            ?//找到要HOOK的函數(shù)所在的模塊
            ?while(pImportDesc->Name)
            ?{
            ??szModName = (char *)((PBYTE)hInstance+pImportDesc->Name) ;
            ??if (strcmp(szModName,szHookModName)==0)
            ??{
            ???break ;?
            ??}
            ??pImportDesc++ ;
            ?}
            ?pImageThunkData = (PIMAGE_THUNK_DATA32)((PBYTE)hInstance+pImportDesc->FirstThunk) ;
            ?
            ?while(pImageThunkData->u1.Function)
            ?{
            ??dwCurAddr = &pImageThunkData->u1.Function ;
            ??if (*dwCurAddr == dwHookApiAddr)
            ??{
            ???VirtualQuery(dwCurAddr,&mbi,sizeof(MEMORY_BASIC_INFORMATION)) ;
            ???VirtualProtect(mbi.BaseAddress,mbi.RegionSize,PAGE_READWRITE,&mbi.Protect) ;
            ???
            ???*dwCurAddr = dwHookFun ;
            ???VirtualProtect(mbi.BaseAddress,mbi.RegionSize,mbi.Protect,&dwOldProtect) ;
            ???break ;
            ??}
            ??pImageThunkData++ ;
            ?}
            ?//要hook這個(gè)API
            ?MessageBoxA(0,"NOT HOOKED!","robinh00d/[Inh4ss]",0) ;

            ?return 0 ;
            }

            日日狠狠久久偷偷色综合0| 亚洲人成无码www久久久| 久久久久久久99精品免费观看| av无码久久久久不卡免费网站| 91亚洲国产成人久久精品网址 | 久久精品水蜜桃av综合天堂| 亚洲欧美日韩精品久久| 2021国内久久精品| 99久久99久久精品国产片| 久久99精品国产麻豆宅宅| 国产综合成人久久大片91| 人妻精品久久久久中文字幕一冢本| 国产免费福利体检区久久| 久久er99热精品一区二区| 亚洲日韩欧美一区久久久久我| 国产精品久久久久久影院| 久久精品国产日本波多野结衣 | 伊人久久大香线蕉AV一区二区| 久久99精品国产自在现线小黄鸭| 亚洲一级Av无码毛片久久精品| 99久久婷婷国产综合精品草原| 影音先锋女人AV鲁色资源网久久 | 久久se这里只有精品| 精品一区二区久久| av午夜福利一片免费看久久| 嫩草伊人久久精品少妇AV| 久久人人爽人人爽人人爽| 久久亚洲AV成人无码| 人妻无码精品久久亚瑟影视 | 久久国产精品波多野结衣AV| 亚洲国产成人久久综合碰碰动漫3d| 性欧美大战久久久久久久久| 亚洲中文字幕无码久久2017| 一本一本久久a久久综合精品蜜桃| 午夜精品久久久久久久久| 久久综合噜噜激激的五月天| 久久国产综合精品五月天| 国内精品久久久久久久97牛牛| 青青草国产97免久久费观看| 精品久久久久久久久中文字幕| 久久精品草草草|