SYSREVEAL

Author Archive

Prototype of the NtLoadKeyEx

by on Apr.27, 2010, under ReverseIt, System Research

If you have seen the WRK, you will find out that the NtLoadKeyEx prototype is as following:

NTSTATUS __stdcall NtLoadKeyEx
(
__in POBJECT_ATTRIBUTES TargetKey,
__in POBJECT_ATTRIBUTES SourceFile,
__in ULONG Flags,
__in_opt HANDLE TrustClassKey
);

But when you attempt to hook this function as this prototype, there must be a critical error.
What’s wrong?
(continue reading…)

1 Comment more...

Peek into NOD32 module file

by on Feb.05, 2010, under ReverseIt

Okey, I have been criticized by Niucool & Bananas as there is none post in this blog from me.
Feeling shamed~~~
So I decided to post something to let your guys know that I am alive.

Do you interesting antivirus engine? Do you wanna know what is it?
Hmmm, I think that I can not give u the answer. It’s a kidding :)

Many people think that eset nod32 is a good antivirus, and … so do I.
Hereby, I intend to play with it and give you a short info about it.
(continue reading…)

7 Comments more...

Protected:

by on Jul.28, 2009, under Uncategorized

This post is password protected. To view it please enter your password below:


Comments Off more...

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!

Blogroll

A few highly recommended websites...