apriorit / windows-process-monitorView external linksLinks
A demo solution to illustrate approaches on getting information about processes and block/allow their start
☆116Nov 19, 2025Updated 2 months ago
Alternatives and similar repositories for windows-process-monitor
Users that are interested in windows-process-monitor are comparing it to the libraries listed below
Sorting:
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Mar 13, 2017Updated 8 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- This is a demo project to illustrate the way to verify and restore original SST in case of some malware hooks☆33Mar 2, 2017Updated 8 years ago
- analyze the content of the pe file on windows, and shell(pack) function for windows drivers.☆11Nov 9, 2018Updated 7 years ago
- ☆14Jan 10, 2017Updated 9 years ago
- An aggregate of tools used in the core of vmp_dbg plus other parsing utils to parse vmp bc.☆16Oct 18, 2016Updated 9 years ago
- Protect process fsfilter driver. Windows x64☆36Apr 11, 2016Updated 9 years ago
- Windows PE file debugger☆11Aug 30, 2017Updated 8 years ago
- more at http://www.zer0mem.sk/?p=271☆12Jun 11, 2013Updated 12 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆78Aug 12, 2015Updated 10 years ago
- Block process execute kernel driver for Windows x64☆19Apr 7, 2016Updated 9 years ago
- ☆17Mar 3, 2016Updated 9 years ago
- network filter driver that control network send speed, based on windows tdi framework.☆31Feb 16, 2024Updated 2 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆22May 31, 2017Updated 8 years ago
- hypervisor in windows device driver by intel vt☆14Aug 25, 2018Updated 7 years ago
- Wow64 syscall hook☆42May 28, 2017Updated 8 years ago
- Windows Kernel Driver - Create a driver device in TDI layer of windows kernel to capture network data packets☆36Jul 21, 2014Updated 11 years ago
- ☆12Feb 19, 2017Updated 8 years ago
- A library of utility classes for leveraging the Registered i/o api present in Microsoft Windows Server 2012, great for HFT or low latency…☆19Oct 8, 2012Updated 13 years ago
- An open source GPU monitoring tool written in C++ and C#. Not meant as a replacement for Fraps but designed to be used by developers and …☆12Feb 9, 2018Updated 8 years ago
- Event Tracing for Windows Custom Events☆21Jan 28, 2015Updated 11 years ago
- ☆18Sep 27, 2016Updated 9 years ago
- A library to install/uninstall NDIS driver on Windows☆15Jul 15, 2015Updated 10 years ago
- GCC-like msvc/cl wrapper for "Bash on Windows"☆17Nov 16, 2017Updated 8 years ago
- A trainer engine template used in gamehacking and cheating.☆15Jun 15, 2014Updated 11 years ago
- Library for ETW, ProcessTracker sample based on ETW☆34Mar 15, 2017Updated 8 years ago
- ☆36Oct 29, 2020Updated 5 years ago
- Kernel mode driver loader, injecting into the windows kernel, Rootkit. Driver injections.☆48Nov 9, 2014Updated 11 years ago
- C++ wrapper for the Windows structured storage implementation known as Compound Files☆20Aug 30, 2020Updated 5 years ago
- An analytical debugger programmed in C++, using Qt.☆22May 20, 2012Updated 13 years ago
- An av windows engine with file guard and compress file enumator☆12Aug 25, 2018Updated 7 years ago
- Windows Vpn Scripter☆14Dec 7, 2016Updated 9 years ago
- ☆14Aug 15, 2018Updated 7 years ago
- Windows kernel-mode callbacks tutorial driver☆48Aug 8, 2016Updated 9 years ago
- Example of real-time Windows ETW packet capture session☆54Jul 12, 2017Updated 8 years ago
- MIR-Engine☆24Jul 6, 2017Updated 8 years ago
- Windows过滤驱动-helloworld☆24Aug 27, 2015Updated 10 years ago
- Anti-virus engine in Windows using VC++ 6.0 and MFC. We applied windows multithreading in virus scan method and user interface. Using MFC…☆16Oct 21, 2016Updated 9 years ago
- ☆15Jul 22, 2024Updated last year