windowsϵķ´µ÷ÊÔ¼¼Êõ

1. ½ø³Ì»·¾³¿é£¨PEB£©¼ì²â£ºPEBÖеÄBeingDebugged±êÖ¾£¨»òµÈЧµÄIsDebuggerPresentº¯Êý£©ÓÃÓÚ¼ì²éµ±Ç°½ø³ÌÊÇ·ñ´¦ÓÚµ÷ÊÔ״̬¡£ÔÚx86»·¾³ÏÂͨ¹ýFS:[0x30]»ñÈ¡PEBÖµ£¬ÔÚx64»·¾³...


Windows ÉÏ×îСµÄ¡¸HelloWorld.exe¡¹ÄÜÓжàС?

´Ófs:[0x30]£¨PEB£©ÖÐÈ¡kernelbase.dllµÄ»ùµØÖ·£¬È»ºóËÑË÷µ¼³ö±íµÃµ½GetProcAddressµÄµØÖ·£¬½ÓÏÂÀ´Ê¶ù¾ÍºÃ°ìÁË¡£ÕâÑù½ÚÊ¡µôÁ˵¼Èë±íµÄ¿Õ¼ä£¬½á...


mov eax,fs:[0x00000018]ÊÇʲôÒâ˼

mov ebx,fs:[0x18] ; get self pointer from TEB mov eax,fs:[0x30] ; get pointer to PEB / database mov [eax + 2], 0; being debugged typedef struct...


ÖйúµÄºÚ¿Í(°×ñ)¼¼ÊõÇ¿µ½ÁËÄÄÒ»²½?

ÔÚx86»·¾³ÏÂͨ¹ýFS:[0x30]»ñÈ¡PEBµÄÖµ£»ÔÚX64»·¾³ÏÂͨ¹ýGS:[0x60]»ñÈ¡PEBÖµ£»µ±Õâ¸öÖµµÈÓÚ0µÄÇé¿öÏ£¬±íʾû±»µ÷ÊÔ£¬·ñÔò¾Í´¦ÓÚµ÷ÊÔ״̬¡£


12V500w³µÔع¤ÆµÄæ±äÆ÷ÖÆ×÷ - °Ù¶È¾­Ñé

1 Ê×ÏÈҪ׼±¸Ò»¸ö±äѹÆ÷£¬ÎҵıäѹÆ÷Êǹ¦·ÅÀïÃæ²ð³öÀ´µÄ£¬Ë«Êä³ö32V£¬500W£¬½«´Î¼¶²ð³öÀ´ 2 ²ð³ý´Î¼¶ºóÓÃë½í°üסÊÖ£¨ÓÐÊÖÌ×µÄ×îºÃÓÃÊÖÌ×£©£¬½«Í­Ë¿...


MSP430x2xxµÄʱÖÓÅäÖà - °Ù¶È¾­Ñé

#include <msp430g2231.h>void main(void){WDTCTL = WDTPW + WDTHOLD; ¹Ø±Õ¿´ÃŹ·¶¨Ê±Æ÷P1DIR = 0x40; ÅäÖÃÊä³öP1OUT = 0; ¹Ø±ÕLED ...


ascllÂëÓ¦Óóõ²½ - °Ù¶È¾­Ñé

33 0041 0x21 | A 65 0101 0x41 | a 97 0141 0x61 (stx)2 0002 0x02 | " 34 0042 0x22 | B 66 0102 0x42 | b 98 0142 0...


Windowsƽ̨·´µ÷ÊÔ¼¼Êõѧϰ

WindowsÔÚµ÷Óýø³Ì»ò´´½¨Ïß³Ìʱ£¬»áΪÿ¸öÏ̷߳ÖÅäTEB£¬²¢½«FS¶Î¼Ä´æÆ÷ÉèÖÃΪָÏòTEBµÄÊ×µØÖ·¡£TEB½á¹¹ÖеÄ0x30Æ«ÒÆ´¦´æ´¢×ÅPEBµÄµØÖ·¡£¹ýµôIsDebuggerPresentµÄ·½·¨ÓжàÖÖ£¬...


awsÔËά - aws´úά - ÇóÖú,Æô¶¯awsʧ°Ü

[ 0.116303] ..TIMER: vector=0x30 apic1=0 pin1=2 apic2=0 pin2=0 [ 0.159699] smpboot: CPU0: Intel(R) Xeon(R) CPU E5-2676 v3 @ 2.40GHz (fam: 06, model: ...


¼Ç¿ªÆôHDCP¹¦ÄܺóÎÞ·¨»Ö¸´³ö³§ÉèÖà - °Ù¶È¾­Ñé

6 [ 370.412868] SysRq : Show Blocked State[ 370.416566] task PC stack pid father[ 370.421698] init D c0784b5c 0 1 0 0x00000000[ 370.427978] [] (__schedule+...


Ïà¹ØËÑË÷

ÈÈÃÅËÑË÷