• <ins id="pjuwb"></ins>
    <blockquote id="pjuwb"><pre id="pjuwb"></pre></blockquote>
    <noscript id="pjuwb"></noscript>
          <sup id="pjuwb"><pre id="pjuwb"></pre></sup>
            <dd id="pjuwb"></dd>
            <abbr id="pjuwb"></abbr>

            S.l.e!ep.¢%

            像打了激速一樣,以四倍的速度運轉,開心的工作
            簡單、開放、平等的公司文化;尊重個性、自由與個人價值;
            posts - 1098, comments - 335, trackbacks - 0, articles - 1
              C++博客 :: 首頁 :: 新隨筆 :: 聯系 :: 聚合  :: 管理

            About ShutDown of Windows(四)

            Posted on 2009-11-17 21:54 S.l.e!ep.¢% 閱讀(210) 評論(0)  編輯 收藏 引用 所屬分類: RootKit
            接著 About ShutDown of Windows(三)
            折騰著,沒多大收獲

            Create 了一個 MFC 的DLL

            CHookDLLApp?theApp;

            HHOOK?g_Hook?
            =?NULL;

            LRESULT?CALLBACK?MyKeyHook(
            int?code,?WPARAM?wParam,?LPARAM?lParam)
            {
            #if?(_WIN32_WINNT?<?0x0400)
            /*
            *?Structure?used?by?WH_KEYBOARD_LL
            ????
            */
            ????typedef?
            struct?tagKBDLLHOOKSTRUCT?{
            ????????DWORD???vkCode;
            ????????DWORD???scanCode;
            ????????DWORD???flags;
            ????????DWORD???time;
            ????????DWORD???dwExtraInfo;
            ????}?KBDLLHOOKSTRUCT,?FAR?
            *LPKBDLLHOOKSTRUCT,?*PKBDLLHOOKSTRUCT;
            #endif
            ????
            ????PKBDLLHOOKSTRUCT?kbDLLHOOK?
            =?(PKBDLLHOOKSTRUCT)lParam;
            ????
            ????
            const?char?*info?=?NULL;
            ????
            ????
            if?(wParam?==?WM_KEYDOWN)
            ????????info?
            =?"key?down";????
            ????
            else?if?(wParam?==?WM_KEYUP)
            ????????info?
            =?"key?up";
            ????
            else?if?(wParam?==?WM_SYSKEYDOWN)
            ????????info?
            =?"sys?key?down";????
            ????
            else?if?(wParam?==?WM_SYSKEYUP)
            ????????info?
            =?"sys?key?up";
            ????
            ????FILE
            *?f?=?fopen("hook.txt",?"a+");
            ????
            ????CString?strLog;
            ????strLog.Format(
            "%s?-?vkCode?[%04x],?[%c]?scanCode?[%04x]\n",?info,?kbDLLHOOK->vkCode,?kbDLLHOOK->vkCode,?kbDLLHOOK->scanCode);
            ????
            ????fwrite(strLog,?
            1,?strLog.GetLength(),?f);
            ????fclose(f);
            ????
            ????
            //?always?call?next?hook
            ????return?CallNextHookEx(g_Hook,?code,?wParam,?lParam);
            }??????


            void?Hook()
            {
            ????
            //?TODO:?Add?extra?initialization?here
            #ifndef?WH_KEYBOARD_LL
            #define?WH_KEYBOARD_LL?13
            #endif

            ????g_Hook?
            =?SetWindowsHookEx(WH_KEYBOARD_LL,?MyKeyHook,?AfxGetApp()->m_hInstance,?0);
            ????
            ????
            if(?g_Hook?==?NULL?)
            ????????AfxMessageBox(
            "Failed?to?Set?Hook");

            }

            ;?HookDLL.def?:?Declares?the?module?parameters?for?the?DLL.

            LIBRARY??????
            "HookDLL"
            DESCRIPTION??
            'HookDLL?Windows?Dynamic?Link?Library'

            EXPORTS
            ????;?Explicit?exports?can?go?here
            ????Hook?????????@
            1

            Create 了一個MFC的工程

            BOOL?CHookTestDlg::OnInitDialog()
            {
            ????CDialog::OnInitDialog();

            ????
            //?Add?"About"?menu?item?to?system?menu.

            ????
            //?IDM_ABOUTBOX?must?be?in?the?system?command?range.
            ????ASSERT((IDM_ABOUTBOX?&?0xFFF0)?==?IDM_ABOUTBOX);
            ????ASSERT(IDM_ABOUTBOX?
            <?0xF000);

            ????CMenu
            *?pSysMenu?=?GetSystemMenu(FALSE);
            ????
            if?(pSysMenu?!=?NULL)
            ????{
            ????????CString?strAboutMenu;
            ????????strAboutMenu.LoadString(IDS_ABOUTBOX);
            ????????
            if?(!strAboutMenu.IsEmpty())
            ????????{
            ????????????pSysMenu
            ->AppendMenu(MF_SEPARATOR);
            ????????????pSysMenu
            ->AppendMenu(MF_STRING,?IDM_ABOUTBOX,?strAboutMenu);
            ????????}
            ????}

            ????
            //?Set?the?icon?for?this?dialog.??The?framework?does?this?automatically
            ????
            //??when?the?application's?main?window?is?not?a?dialog
            ????SetIcon(m_hIcon,?TRUE);????????????//?Set?big?icon
            ????SetIcon(m_hIcon,?FALSE);????????//?Set?small?icon
            ????
            ????
            //?TODO:?Add?extra?initialization?here
            #ifndef?WH_KEYBOARD_LL
            ????
            #define?WH_KEYBOARD_LL?13
            #endif
            ????
            //?????g_Hook?=?SetWindowsHookEx(WH_KEYBOARD_LL,?MyKeyHook,?AfxGetApp()->m_hInstance,?0);
            //?????
            //?????if(?g_Hook?==?NULL?)
            //?????????AfxMessageBox("Failed?to?Set?Hook");

            ????TCHAR?szPath[MAX_PATH]?
            =?{0};
            ????GetModuleFileName(NULL,?szPath,?MAX_PATH);
            ????PathRenameExtension(szPath,?_T(
            ""));

            ????typedef?
            void?(*TYPE_pfnLoadLibrary)();
            ????TYPE_pfnLoadLibrary?pfnLoadLibrary?
            =?NULL;

            ????HMODULE?Module?
            =?LoadLibrary(szPath);
            ????pfnLoadLibrary?
            =?(TYPE_pfnLoadLibrary)GetProcAddress(Module,?"Hook");
            ????
            ????pfnLoadLibrary();

            ????
            return?TRUE;??//?return?TRUE??unless?you?set?the?focus?to?a?control
            }

            時間太緊,沒做一些異常判斷處理
            HOOK成功了,用 SysCheck 工具一看, 只看到了 HookTest.exe 里面加載了一個HookDLL.dll

            采用 injecteddll 工具也沒有看到所謂的“注入”DLL

            是否“注入”成功,不得所知
            所謂的“注入”又該怎么看到的呢?明天再解決它。
            久久亚洲精品无码播放| 久久精品亚洲欧美日韩久久| 大香伊人久久精品一区二区| 久久天天日天天操综合伊人av| 欧洲国产伦久久久久久久| 伊人久久无码精品中文字幕| 亚洲精品午夜国产va久久| 男女久久久国产一区二区三区| 国产精品久久久亚洲| WWW婷婷AV久久久影片| 久久精品女人天堂AV麻| 99久久国产宗和精品1上映 | 伊人久久大香线蕉影院95| 久久久久亚洲?V成人无码| 久久午夜无码鲁丝片| 青青草国产97免久久费观看| 久久久老熟女一区二区三区| 久久免费大片| 91亚洲国产成人久久精品| 无码人妻久久一区二区三区蜜桃 | 国内精品久久久久久99| 久久亚洲国产精品123区| 九九久久99综合一区二区| 亚洲国产精品一区二区三区久久| 国产精品女同久久久久电影院| 久久热这里只有精品在线观看| 精品国产一区二区三区久久蜜臀| 人妻精品久久久久中文字幕一冢本| 久久久久亚洲爆乳少妇无| 日本三级久久网| 久久国产精品久久| 久久久久99精品成人片欧美| 久久精品国产亚洲AV久| 亚洲国产视频久久| 久久婷婷国产剧情内射白浆| 久久亚洲国产成人影院网站| 久久无码精品一区二区三区| 久久综合九色综合久99| 人妻少妇精品久久| 国产69精品久久久久APP下载| 一本久久免费视频|