论文部分内容阅读
随着计算机与网络的普及,信息安全越来越成为人们所普遍关心的大事。密码的渗透与反渗透在此领域表现的愈演愈烈。本文深入分析了各个版本windows密码的特点,尤其是针对windws2K/XP安全性提高的情况下,提出了获取windows密码的关键技术及方法。并进一步分析了windows钩子(Hook)和内存映像文件(MMF)的技术细节。在基于MMF的核心类CIPC中为钩子句柄在内存中的共享提供了方法,并且解决了线程间的同步问题。然后深入讨论了WM_COPYDATA消息的特点。接着分析了实例程序重要代码及注解并演示了结果。最终给出一些反密码渗透的应对策略。
With the popularization of computer and network, information security has become a common concern of people. The penetration of passwords and reverse osmosis performance in this area intensified. This article analyzes in depth the characteristics of each version of the windows password, especially for the case of windws2k / xp security is improved, the key technology and method for obtaining the windows password is proposed. And further analysis of the windows hook (Hook) and memory image file (MMF) technical details. The MMF-based core class CIPC provides a way for hook handles to be shared in memory and solves the problem of synchronization between threads. Then in-depth discussion of the characteristics of WM_COPYDATA news. Then analyzed the important code and annotations of the example program and demonstrated the result. Finally give some counter-password penetration strategy.