hm200958 / kmdf--analyseLinks
进程行为分析工具
☆14Updated 8 years ago
Alternatives and similar repositories for kmdf--analyse
Users that are interested in kmdf--analyse are comparing it to the libraries listed below
Sorting:
- 安全卫士项目☆32Updated 7 years ago
- 逆的或者收集的别人家的代码☆27Updated 5 months ago
- 驱动层拦截web访问源码☆29Updated 7 years ago
- 自己实现LoadLirbrary,GetProcAdd,FreeLirbrary等函数的功能,比特币病毒wcry就是用了这一功能☆17Updated 8 years ago
- base on winHttp to develep download☆12Updated 7 years ago
- 锁主页驱动☆37Updated 6 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆26Updated 6 years ago
- 一种通用的XOR加密后内存加载PE绕过杀毒软件的方法☆11Updated 9 years ago
- 进程保护、进程过滤的小工程、主要亮点是在内核中对操作系统中的用户进行管理☆16Updated 10 years ago
- Basic Injector running on x64 machines that is able to load into x64 AND x86 processes☆21Updated 6 years ago
- Win32 API Hook偵測☆10Updated 7 years ago
- Sysark全称system anti-rootkit,是我学习内核写的工具(2013年的代码,后续不会再更新),里面基本上所有的功能都是用内核实现的。这里只是实现了反rootkit部分功能,作为工具的话,本人觉得还欠完善,但作为学习,或有人需要。目前针对的是XP SP2,…☆27Updated 7 years ago
- 管道监视器,类似于spyxx之类的东西,一般用于监视目标进程的系统调用.关键词:detours+piep☆23Updated 11 years ago
- 常用代码类☆13Updated 11 years ago
- copy of tdifw lib☆10Updated 8 years ago
- 卓然主动防御源码(可执行文件+完整源码+完整作品报告)☆15Updated 6 years ago
- ☆21Updated 7 years ago
- 基于WinDivert实现的一个包过滤与截断程序☆13Updated 6 years ago
- 小型主动防御引擎☆56Updated 9 years ago
- A collection of Windows Administrator tools☆17Updated 11 years ago
- PE文件格式学习资料☆18Updated 7 years ago
- ☆14Updated 4 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆27Updated 7 years ago
- x64HOOK库☆18Updated 5 years ago
- Windows内核设计思想☆23Updated 8 years ago
- x64 Kernel Hooks Detection☆24Updated 8 years ago
- 《面向脚本驱动的软件开发》示例代码☆17Updated 6 years ago
- windows inlinehook R3 R0☆11Updated 7 years ago
- 一个简单的用于win7 x64的驱动级HIPS☆54Updated 9 years ago
- C++ class for displaying parsed internet packet headers according to given format and filter strings.☆10Updated 7 years ago