Notice
Recent Posts
Recent Comments
| 일 | 월 | 화 | 수 | 목 | 금 | 토 |
|---|---|---|---|---|---|---|
| 1 | ||||||
| 2 | 3 | 4 | 5 | 6 | 7 | 8 |
| 9 | 10 | 11 | 12 | 13 | 14 | 15 |
| 16 | 17 | 18 | 19 | 20 | 21 | 22 |
| 23 | 24 | 25 | 26 | 27 | 28 | 29 |
| 30 |
Tags
- idapython
- javascript
- mock.patch
- hex-rays
- open office xml
- malware
- ida pro
- h5py.File
- error
- svn update
- Python
- NumPy Unicode Error
- error fix
- idapro
- 포인터 매핑
- Injection
- pytest
- Ransomware
- x64
- why error
- TensorFlow
- Analysis
- Rat
- idb2pat
- data distribution
- MySQL
- ida
- debugging
- ecma
- commandline
Archives
- Today
- Total
목록Usermode (1)
13 Security Lab
Windows API - User mode matched kernel mode
Processes User mode Kernel mode NtTerminateProcess PsTerminateProcess/PspTerminateProcess NtOpenProcess PsLookupProcessByProcessId, ObOpenObjectByPointer Threads User mode Kernel mode NtTerminateThread PspTerminateThreadByPointer NtOpenThread PsLookupThreadByThreadId, ObOpenObjectByPointer NtGetContextThread PsGetContextThread NtSetContextThread PsSetContextThread Virtual memory User mode Kernel..
Computer Science/Windows Externals
2015. 5. 1. 18:37