Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

Delphi Hook

ÇëÎÊÓÃcmd.exe Ö´ÐÐregedit.exe ʱ£¬ÎªÊ²Ã´ÓÃCreateProcess hook²»µ½£¬

°´ctrl+alt+del µÈÒ²hook²»µ½£¬ËûÃDz»Êǵ÷ÓÃCreateProcess Âð£¿
ÊÔÊÔ¼àÊÓShellexecute£¬ÓÃShell¹³×Ó

function NewShellExecuteW(hwnd:HWND;Operation:PWideChar;FileName:PWideChar;Parameters:PWideChar;Directory:PWideChar;ShowCmd:Integer):HINST;Stdcall;
type
  TNewShellExecuteW=function (hwnd:HWND;Operation:PWideChar;fileName:PWideChar;Parameters:PWideChar;Directory:PWideChar;ShowCmd:Integer):HINST;Stdcall;
begin
Resutl:=8;
Exit;
end;
ΪʲôÕâÑù±àÒë²»ÄÜͨ¹ýÀ´£¬Õâ¸öº¯Êý±¾À´¾ÍÊÇÕâôÉùÃ÷µÄ°¡£¬

[DCC Error] eabe_data_main.dpr(127): E2005 'hwnd' is not a type identifier

NtCreateProcess(

  OUT PHANDLE ProcessHandle,
  IN ACCESS_MASK DesiredAccess,
  IN POBJECT_ATTRIBUTES ObjectAttributes OPTIONAL,
  IN HANDLE ParentProcess,
  IN BOOLEAN InheritObjectTable,
  IN HANDLE SectionHandle OPTIONAL,
  IN HANDLE DebugPort OPTIONAL,
  IN HANDLE ExceptionPort OPTIONAL );


ºÍzwCreateProcessÕâÁ½¸öº¯ÊýµÄdelphiÉùÃ÷

°ïÎÒ°ÑÕâ¸öת»»³ÉdelphiµÄfunction.


MARK

hwnd:HWND
C++ÕÕ³­¹ýÀ´µÄ°É£¬DELPHI²»Çø·Ö´óСдµÄ¡£



ÒýÓÃ
hwnd:HWND
C++ÕÕ³­¹ýÀ´µÄ°É£¬DELPHI²»Çø·Ö´óСдµÄ¡£



Ïà¹ØÎÊ´ð£º

DelphiÔõôȡ·µ»ØÄÚÈÝÖеÄÖ¸¶¨²¿·Ö.

·µ»ØµÄÄÚÈÝÊÇÈçÏ´úÂë,ÔõôÄÜÇþµÀ2b?
<p class="text1">1a </p>
<p class="text1">2b </p>
<p class="text1">3c </p>
<p cl ......

delphiµÄdll×Ó´°ÌåÎÊÌâµÄ½â¾ö - Delphi / ·Ç¼¼ÊõÇø

Ò»Ö±ÏëʹÓÃdll£¬µ«delphiµÄdll×Ó´°Ìå¾­³£Óи÷ÖÖÎÊÌ⣬±ÈÈçÖ÷´°¿ÚÓëdll×Ó´°¿ÚµÄ½¹µãÎÊÌ⣬×Ó´°¿ÚÖпؼþµÄtab¼ü¡¢Èȼü¡¢enter¼üµÈµÄÎÊÌ⣬×Ó´°¿ÚÍ˳öµÄÎÊÌâ¡¢Æ½Ãæ°´Å¥ÎÊÌâµÈµÈ£¬ÍøÕ¾ÉϽøÐÐÁËËÑË÷£¬Ã»ÓбȽÏÍêÃÀµÄ½â¾ö· ......

xml´´½¨ºóÈçºÎÏú»Ù? - Delphi / ÍøÂçͨÐÅ/·Ö²¼Ê½¿ª·¢

xml := CreateOleObject('Microsoft.XMLHTTP');
  xml.Open('GET','http://www.google.com', False);
  xml.Send;
  xml.responseText;
ʹÓÃxml.responseText¿ÉÒÔ»ñÈ¡ÍøÒ³Ô´Âë,µ«ÊÇÔÙ´Î ......

ÓÃdelphi×öÒ»¸ö½çÃæ

ÎÒÃǵ¼Ê¦ÈÃÎÒÃÇÓÃdelphi×öÒ»¸ö½çÃæ,ÒÔǰûÓÐѧ¹ý,¸Ð¾õÓÐºÃ¶à¿Ø¼þҪѧ,²»ÊǺܶ®,ÓÐË­Äܹ»Ö¸µ¼Ö¸µ¼°¡,лл!!
´ò¿ªdelphi£¬ÔÚÉÏÃæÕҿؼþ£¬ÍùformÉÏÍϾÍÊÇÁË£¬²¼¾ÖÉèÖúþÍÐÐÁË

¿ªdelphi£¬°Ñ¿Ø¼þÀ¸ÉϵĿؼþÍϵ½´°ÌåÉ ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ