haidragon / study_firewall
主动防御-网络过滤器(firewall)
☆5Updated last year
Alternatives and similar repositories for study_firewall:
Users that are interested in study_firewall are comparing it to the libraries listed below
- 卓然主动 防御源码(可执行文件+完整源码+完整作品报告)☆15Updated 6 years ago
- x64HOOK库☆18Updated 5 years ago
- 一个32位windows下x86指令集的代码扭曲加密小工具☆32Updated 5 years ago
- Sysark全称system anti-rootkit,是我学习内核写的工具(2013年的代码,后续不会再更新),里面基本上所有的功能都是用内核实现的。这里只是实现了反rootkit部分功能,作为工具的话,本人觉得还欠完善,但作为学习,或有人需要。目前针对的是XP SP2,…☆27Updated 7 years ago
- 一个可以帮助你进行Windows驱动开发和分析的工具。☆43Updated 3 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆22Updated 6 years ago
- 管道监视器,类似于spyxx之类的东西,一般用于监视目标进程的系统调用.关键词:detours+piep☆23Updated 11 years ago
- 大表哥的Syscall-Monitor☆34Updated 5 years ago
- 基于Unicorn仿真PE模拟☆28Updated 2 years ago
- 逆的或者收集的别人家的代码☆27Updated last month
- 安全卫士项目☆32Updated 7 years ago
- ☆31Updated 6 years ago
- 逆向小红伞杀毒软件驱动——avkmgr☆69Updated 7 years ago
- ☆38Updated 6 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆26Updated 7 years ago
- 基于UC的启发式杀毒引擎[还没做完]☆34Updated 3 years ago
- 绕过卡巴斯基主动防御,加载驱动,unhook所有ssdt hook及shadow ssdt hook☆37Updated 9 years ago
- 内核级ARK工具。☆59Updated 8 years ago
- map driver to memory☆25Updated 6 years ago
- intel vt-x hypervisor ept☆25Updated 4 years ago
- 一个早期的抗启发式查杀的WIN32免杀壳☆43Updated 11 years ago
- 锁主页驱动☆37Updated 6 years ago
- PEBFake(修改PEB 伪装当前进程路径、参数等)☆50Updated 4 years ago
- Intel Virtualization Technology demo☆65Updated 8 years ago
- Windows CVE主防(HIPS/HIDS)☆54Updated 3 years ago
- For Example. See Miro's Blog☆30Updated 2 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆26Updated 6 years ago
- 扫描以及恢复 r3hook 类☆10Updated 3 years ago
- ☆27Updated 5 years ago
- 小型主动防御引擎☆57Updated 8 years ago