apriorit / antirootkit-anti-splicerView external linksLinks
The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers
☆34Mar 13, 2017Updated 8 years ago
Alternatives and similar repositories for antirootkit-anti-splicer
Users that are interested in antirootkit-anti-splicer are comparing it to the libraries listed below
Sorting:
- This is a demo project to illustrate the way to verify and restore original SST in case of some malware hooks☆33Mar 2, 2017Updated 8 years ago
- ☆17Mar 3, 2016Updated 9 years ago
- wow64 syscall filter☆13Nov 12, 2014Updated 11 years ago
- Minifilter Driver☆15Feb 10, 2017Updated 9 years ago
- An av windows engine with file guard and compress file enumator☆12Aug 25, 2018Updated 7 years ago
- The old integrity check bypass made by dude719.☆13Apr 2, 2016Updated 9 years ago
- Kernel Context [template c++] Library - K C L. Your stl for work in linux/windows kernel !!!☆11Jul 24, 2018Updated 7 years ago
- Block process execute kernel driver for Windows x64☆19Apr 7, 2016Updated 9 years ago
- NDIS5/NDIS6 filter driver based simple firewall and static (1x1) NAT engine for Windows 7/8/10☆26Mar 20, 2023Updated 2 years ago
- windows kernel File redirection☆20Sep 21, 2014Updated 11 years ago
- Wow64 syscall hook☆42May 28, 2017Updated 8 years ago
- ☆11Sep 28, 2017Updated 8 years ago
- Detect the SCI in windows.☆11Mar 23, 2017Updated 8 years ago
- Protect process fsfilter driver. Windows x64☆36Apr 11, 2016Updated 9 years ago
- WoW64 -> x64☆18Oct 1, 2016Updated 9 years ago
- Kernel Inject Process☆11Jul 28, 2017Updated 8 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Dec 5, 2017Updated 8 years ago
- analyze the content of the pe file on windows, and shell(pack) function for windows drivers.☆11Nov 9, 2018Updated 7 years ago
- Windows设备驱动开发 光盘(示例代码)☆10Jan 14, 2013Updated 13 years ago
- ☆15Jul 22, 2024Updated last year
- An aggregate of tools used in the core of vmp_dbg plus other parsing utils to parse vmp bc.☆16Oct 18, 2016Updated 9 years ago
- ☆14Jun 27, 2017Updated 8 years ago
- A command line tool to load and unload a device driver.☆46Jun 10, 2017Updated 8 years ago
- WIP - Play with Intel VM Extensions☆23Jun 12, 2017Updated 8 years ago
- User-mode kernel callback framework☆10Nov 16, 2013Updated 12 years ago
- ☆11Mar 11, 2015Updated 10 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Jul 1, 2015Updated 10 years ago
- Windows Kernel Driver - Create a driver device in TDI layer of windows kernel to capture network data packets☆36Jul 21, 2014Updated 11 years ago
- Bypass HackShield several specific SSDT hook in Ring0☆24Mar 10, 2015Updated 10 years ago
- pass game protect☆12Apr 26, 2014Updated 11 years ago
- ☆12Aug 28, 2017Updated 8 years ago
- kernel space code☆12Jun 8, 2019Updated 6 years ago
- ☆18Sep 27, 2016Updated 9 years ago
- ☆17Oct 24, 2016Updated 9 years ago
- Anti-Anti-VM solution via Windows Driver☆62May 8, 2018Updated 7 years ago
- this is a small example for NDIS Firewall☆26Mar 17, 2016Updated 9 years ago
- more at http://www.zer0mem.sk/?p=271☆12Jun 11, 2013Updated 12 years ago
- lol amf协议解析☆15Nov 10, 2016Updated 9 years ago
- A library to install/uninstall NDIS driver on Windows☆15Jul 15, 2015Updated 10 years ago