[ Pobierz całość w formacie PDF ]
http://www.rootkit.com excellent reference for every one wanting to know more about
rootkits.
http://www.msdn.microsoft.com always nice to have around when playing with windows
http://www.agner.org/assem/#testp reference code for any one needing a example on how to
work with RDTSC and RDPMC. We used a slightly modified version of this to perform the
tests. To busy at the moment to release a special purpose application for this kind of detection.
Maybe we will in the future.
http://www.intel.com off course needed to retrieve the manuals.
Books:
- Rootkits, subverting the windows kernel by Greg Hoglund and James Butler
- Microsoft Windows Internals by Mark E. Russinovich and David A. Solomon
11
[ Pobierz całość w formacie PDF ]