Study on Windows Legal Process Information Injection and API Hook Techniques
XU Si-ming,XUE Zhi
DOI: https://doi.org/10.3969/j.issn.1009-8054.2010.10.028
2010-01-01
Abstract:This paper mainly explores two basic techniques in the field of malicious-code attack and defense.For the malicious-code attack,it discusses respectively DLL injection technique and API hook technique,then analyzes the realization method in each technique,while for the malicious-code defense,the corresponding security detection methods based individually on compiler,virtual machine,and operating system are pointed out.In addition,their characteristics are analyzed,including their advantages and disadvantages.So this paper may offer certain beneficial helps to the relevant technologies of malicious-code attack and defense in the infosec research field.
What problem does this paper attempt to address?