about how to make a anti-virus engine
☆115May 22, 2025Updated last year
Alternatives and similar repositories for awesome_anti_virus_engine
Users that are interested in awesome_anti_virus_engine are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆165Oct 27, 2024Updated last year
- Stack integrity verification to Detect SleepMask or CallStack Spoofer☆56Jul 13, 2025Updated last year
- 基于UC的启发式杀毒引擎[还没做完]☆38Mar 28, 2021Updated 5 years ago
- ☆18Jun 16, 2025Updated last year
- Collect Windows telemetry for Maldev☆500Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- SafeHarbor revamped with Direct Syscalls using InlineWhispers3☆15Feb 16, 2026Updated 6 months ago
- Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antiv…☆568Mar 24, 2026Updated 4 months ago
- libdt is part of the "Huorong eXtendible Stream Scan Engine" project copyright by Huorong Borui (Beijing) Technology Co., Ltd.☆14Aug 17, 2015Updated 11 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆70May 11, 2022Updated 4 years ago
- Extracted Yara rules from Windows Defender mpavbase and mpasbase☆539May 14, 2026Updated 3 months ago
- 通过分析流量,快速检查手机是否被APT攻击☆35Oct 19, 2025Updated 9 months ago
- ☆26Jul 15, 2023Updated 3 years ago
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆141Aug 31, 2025Updated 11 months ago
- defender_database☆25Oct 31, 2023Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Self Cleanup in post-ex job☆59Sep 10, 2024Updated last year
- Uses ghidra to find all ETW write metadata for each API in a PE file☆28Jul 26, 2024Updated 2 years ago
- ForsHops☆60Mar 25, 2025Updated last year
- The first Computer Emergency Response (ARK) Tools for young people ;) 年轻人的第一款应急响应(ARK)工具 ;)☆686Oct 21, 2025Updated 9 months ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆184Aug 3, 2024Updated 2 years ago
- Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThrea…☆1,324Jun 21, 2024Updated 2 years ago
- ☆19Jul 31, 2026Updated 2 weeks ago
- Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool☆341Nov 20, 2025Updated 8 months ago
- Simulate per-process disconnection in red team environments☆116Jun 6, 2025Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A modern C++20 header-only library for advanced direct system call invocation.☆179May 22, 2026Updated 2 months ago
- Usermode exploit to bypass any AC using a 0day shatter attack.☆388Nov 26, 2025Updated 8 months ago
- Peach Fuzzer漏洞挖掘实战☆23Jul 6, 2023Updated 3 years ago
- GateSentinel 是一个现代化的 C2 (Command and Control) 框架,专为安全研究和渗透测试设计。该项目采用 Go 语言开发服务端,C 语言开发客户端,提供了强大的远程控制和管理功能。☆288Jul 17, 2025Updated last year
- 在线 安软识别☆12Aug 6, 2025Updated last year
- Lightweight, dependency-free x86-64 CPU emulation library with Unicorn-like guest mode and direct host-memory execution.☆224May 11, 2026Updated 3 months ago
- PoC memory injection detection agent based on ETW, for offensive and defensive research purposes☆300Apr 10, 2021Updated 5 years ago
- A tool for automatic patch shellcode into binary file to bypass AV. / 一个自动patch shellcode到二进制文件的工具☆581Updated this week
- A simple Sleepmask BOF example☆177Nov 24, 2025Updated 8 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆219Updated this week
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆55May 12, 2025Updated last year
- ☆48Jun 18, 2026Updated 2 months ago
- HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.☆736Jul 19, 2023Updated 3 years ago
- 使用 Intel 虚拟化特性实现应用层HOOK☆66Sep 11, 2025Updated 11 months ago
- A Blind EDR Project for Educational Purposes☆108Jan 18, 2025Updated last year
- 一款linux下的安全产品目的是满足个人安全需求有SSH爆破防护和SYN攻击扫描防护功能,基于netfilter,☆23Dec 2, 2023Updated 2 years ago