汇编Shellcode [2015] 简单探测KiFastCallEntry hook 懂的都懂 懒得解释了 ```c mov eax, 0ffffffffh //invalid syscall syscall test r11d, 0100h jnz single_step_detected ret ``` 阅读全文 2020-09-21 huoji 0 条评论