about how to make a anti-virus engine
☆114May 22, 2025Updated last year
Alternatives and similar repositories for awesome_anti_virus_engine
Users that are interested in awesome_anti_virus_engine are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆164Oct 27, 2024Updated last year
- Stack integrity verification to Detect SleepMask or CallStack Spoofer☆55Jul 13, 2025Updated last year
- 基于UC的启发式杀毒引擎[还没做完]☆35Mar 28, 2021Updated 5 years ago
- ☆18Jun 16, 2025Updated last year
- Collect Windows telemetry for Maldev☆494Jun 23, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- SafeHarbor revamped with Direct Syscalls using InlineWhispers3☆15Feb 16, 2026Updated 5 months ago
- Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antiv…☆567Mar 24, 2026Updated 4 months ago
- libdt is part of the "Huorong eXtendible Stream Scan Engine" project copyright by Huorong Borui (Beijing) Technology Co., Ltd.☆14Aug 17, 2015Updated 10 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆70May 11, 2022Updated 4 years ago
- Extracted Yara rules from Windows Defender mpavbase and mpasbase☆534May 14, 2026Updated 2 months ago
- 2025最新开发的ShellcodeLoader框架,用于AV检测策略分析的模块化 Shellcode 加载器框架,具备非常强大的静态混淆功能。☆26Jul 7, 2025Updated last year
- 通过分析流量,快速检查手机是否被APT攻击☆35Oct 19, 2025Updated 9 months ago
- ☆26Jul 15, 2023Updated 3 years ago
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆140Aug 31, 2025Updated 10 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- defender_database☆25Oct 31, 2023Updated 2 years ago
- Self Cleanup in post-ex job☆60Sep 10, 2024Updated last year
- Uses ghidra to find all ETW write metadata for each API in a PE file☆28Jul 26, 2024Updated 2 years ago
- ForsHops☆60Mar 25, 2025Updated last year
- The first Computer Emergency Response (ARK) Tools for young people ;) 年轻人的第一款应急响应(ARK)工具 ;)☆682Oct 21, 2025Updated 9 months ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆184Aug 3, 2024Updated last year
- ☆19Oct 25, 2024Updated last year
- Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThrea…☆1,324Jun 21, 2024Updated 2 years ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆336Nov 20, 2025Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Simulate per-process disconnection in red team environments☆115Jun 6, 2025Updated last year
- A modern C++20 header-only library for advanced direct system call invocation.☆176May 22, 2026Updated 2 months ago
- Usermode exploit to bypass any AC using a 0day shatter attack.☆384Nov 26, 2025Updated 8 months ago
- Peach Fuzzer漏洞挖掘实战☆23Jul 6, 2023Updated 3 years ago
- GateSentinel 是一个现代化的 C2 (Command and Control) 框架,专为安全研究和渗透测试设计。该项目采用 Go 语言开发服务端,C 语言开发客户端,提供了强大的远程控制和管理功能。☆288Jul 17, 2025Updated last year
- 在线安软识别☆12Aug 6, 2025Updated 11 months ago
- Lightweight, dependency-free x86-64 CPU emulation library with Unicorn-like guest mode and direct host-memory execution.☆217May 11, 2026Updated 2 months ago
- PoC memory injection detection agent based on ETW, for offensive and defensive research purposes☆300Apr 10, 2021Updated 5 years ago
- A tool for automatic patch shellcode into binary file to bypass AV. / 一个自动patch shellcode到二进制文件的工具☆579Jul 19, 2026Updated last week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A simple Sleepmask BOF example☆176Nov 24, 2025Updated 8 months ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆214Updated this week
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆55May 12, 2025Updated last year
- HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.☆735Jul 19, 2023Updated 3 years ago
- 使用 Intel 虚拟化特性实现应用层HOOK☆66Sep 11, 2025Updated 10 months ago
- A Blind EDR Project for Educational Purposes☆106Jan 18, 2025Updated last year
- 一款linux下的安全产品目的是满足个人安全需求有SSH爆破防护和SYN攻击扫描防护功能,基于netfilter,☆23Dec 2, 2023Updated 2 years ago