Computer and Modernization ›› 2012, Vol. 1 ›› Issue (200): 6-03.doi: 10.3969/j.issn.1006-2475.2012.04.002

• 信息安全 • Previous Articles     Next Articles

Information Protection Based on Windows NT Filter Drivers Keyboard

YE Lei, GE Wan-cheng   

  1. Chinese-German School for Postgraduate Studies, Tongji University, Shanghai 200092, China
  • Received:2011-11-11 Revised:1900-01-01 Online:2012-04-16 Published:2012-04-16

Abstract: With the development of E-commerce, the wide application of E-bank and the growing sophistication of RootKit technology, information stealing from these application systems keeps increasing. It becomes much harder to detect malicious software. Based on the theories of E-bank keyboard protection module, a comparatively sound keyboard data entry protection strategy, targeting the detection of currently-popular RookKit, is proposed. By adopting a more safe and reliable keyboard data entry method, this strategy achieves a better result of protecting users’ data entry.

Key words: filter drivers, RootKit, IRQ, IRP