如何从用户模式调用/挂钩内核模式API?
我很想深入研究内核挂钩 - 但我的问题是我不喜欢 C/C++。但我在 VB6 编程方面拥有 10 多年的经验,并且称自己为该语言的专家。所以我的问题是是否可以使用一个微型 C 内核模式驱动程序 - VB 可以通过 DeviceIoControl API 从用户模式控制该驱动程序,以便我可以调用或挂钩任何内核模式 API?
I'd love to dive into kernel hooking - but my problem is that I don't like C/C++. But I've over 10 years experience in VB6 programming and would call my self as an expert in this language. So my question is if it was possible to use a tiny C kernel mode driver - which could be controlled by VB from the user mode via the DeviceIoControl API so that I could to call or hook any kernel mode API?
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(2)
几年前,我读了一本有关该主题的优秀书籍,作者是 Stephen Teilhet,它确实让我大开眼界(关于 Visual Basic 6)。我建议你购买并检查一下。
这是这本书的评论 - 它也包括对作者的采访。
Years ago I read an excellent book on the topic, Subclassing and Hooking with Visual Basic by Stephen Teilhet, and it really opened my eyes on the possibilities out there (with regard to Visual Basic 6). I suggest you purchase it and check it out.
Here is a review of the book - it also includes an interview with the author.
不,你应该学习VC++,DDK
no,you should lean VC++,DDK