| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:PRESTREZANJE SISTEMSKIH KLICEV PRI MICROSOFTOVIH OPERACIJSKIH SISTEMIH OKNA
Authors:ID Škofič, Jure (Author)
ID Zazula, Damjan (Mentor) More about this mentor... New window
ID Kolšek, Mitja (Comentor)
Files:.pdf UNI_Skofic_Jure_2010.pdf (4,51 MB)
MD5: EA3BCCDA73D49FBF75578C9FE4C578EA
PID: 20.500.12556/dkum/0af12100-89ef-46dc-a9a2-a562fc71c455
 
Language:Slovenian
Work type:Undergraduate thesis
Organization:FERI - Faculty of Electrical Engineering and Computer Science
Abstract:Opisali smo tehnike prestrezanja klicev pri operacijskih sistemih okna, predstavili knjižnico Microsoft Detours in razvili nadzorniško aplikacijo, ki prestreza sistemske klice iz aplikacijskega vmesnika za jedro operacijskega sistema. Predstavili smo tudi tehnike vrivanja skupnih knjižnic v procese. Z uporabo tehnike vrivanja skupnih knjižnic s pomočjo spreminjanja tabele uvozov v tekočem procesu, smo izvedli vrivanje skupne knjižnice v vse procese v uporabniškem prostoru in tako omogočili prestrezanje sistemskih klicev na globalnem nivoju. Prav tako smo razvili mehanizem, ki omogoča hkratno prestrezanje in uporabo funkcij, ne da bi povzročili kritično napako v aplikacijah, ki jim sledimo.
Keywords:operacijski sistemi, prestrezanje klicev, vrivanje skupnih knjižnic, nadzornik procesov, aplikacijski vmesnik za jedro operacijskega sistema
Place of publishing:Maribor
Publisher:[J. Škofič]
Year of publishing:2010
PID:20.500.12556/DKUM-17139 New window
UDC:004.451.9:004.9(043.2)
COBISS.SI-ID:14991894 New window
NUK URN:URN:SI:UM:DK:OQVP6JIE
Publication date in DKUM:06.01.2011
Views:2041
Downloads:228
Metadata:XML DC-XML DC-RDF
Categories:KTFMB - FERI
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Secondary language

Language:English
Title:SYSTEM CALL HOOKING IN MICROSOFT WINDOWS OPERATING SYSTEMS
Abstract:We describe techniques for function call hooking on Windows operating systems, present the Microsoft Detours library, and reveal the monitoring application that we developed for hooking system calls to the Windows native API. We present a range of methods used for DLL injection. By using the method of modifying the import address table of a running process, we implemented a system for DLL injection which is capable of injecting a library into all processes, running in user space, thereby allowing us to hook system calls on a global level. We also implemented a mechanism which allows hooking a function call and using it, at the same time, without causing a critical error in the hooked process.
Keywords:operating systems, hooking, DLL injection, process monitor, Windows native API


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica