文 件 列 表
代码
[1-1]SetupTestEnv
[1-2]KrnlHW64
[2-1]AboutKPP&DSE
[2-2]ScmDrvLoader
[2-3]MemoryOperationTest
[2-4]StringOperationTest
[2-5]FileOperationTest
[2-6]RegistryOperationTest
[2-7]ProcessOperationTest
[2-8]OtherFunction
[3-1]Wow64&CompatibleMode
[3-2]DisableWin7KPP&DSE
[3-3]CalcSSDTFuncAddr
[3-4]SSDTHookUnhook
[3-5]SSSDTHookUnhook
[3-6]InlineHookUnhook
[4-1]MonitorCreateExitProcessThread
[4-2]MonitorLoadUnloadDllDriver
[4-3]MonitorRegistryOperation
[4-4]MonitorFileOperation
[4-5]MonitorProcessThreadHandle
[4-6]MonitorFileOperationByCallback
[4-7]MonitorInternetAccessByWFP
[4-8]TimeChangeCallback
[5-1]DrvInlineASM
[5-2]DkomHideProtect
[5-3]DriverEnumHide
[5-4]ForceKillProcess
[5-5]ForceProcMemRW
[5-6]EnumMsgHook
[5-7]UnlockFile
[5-8]PE32+
[6-1]RemoteThreadToSystemProcess
[6-2]Ring3InlineHookAntiHook
[6-3]Ring3EatIatHook
[7-1]EnumRemoveProcessThreadNotify
[7-2]EnumRemoveImageNotify
[7-3]EnumRemoveCmpCallback
[7-4]EnumRemoveObCallback
[7-5]EnumAntiMiniFilter