ljvblfz / WindowsKernelPhilosophy
Windows内核设计思想
☆23Updated 8 years ago
Alternatives and similar repositories for WindowsKernelPhilosophy:
Users that are interested in WindowsKernelPhilosophy are comparing it to the libraries listed below
- 内核级ARK工具。☆59Updated 8 years ago
- ☆23Updated 7 years ago
- Sysark全称system anti-rootkit,是我学习内核写的工具(2013年的代码,后续不会再更新),里面基本上所有的功能都是用内核实现的。这里只是实现了反rootkit部分功能,作为工具的话,本人觉得还欠完善,但作为学习,或有人需要。目前针对的是XP SP2,…☆27Updated 7 years ago
- windows inlinehook R3 R0☆11Updated 6 years ago
- x64HOOK库☆18Updated 5 years ago
- ☆30Updated 6 years ago
- ☆40Updated 5 years ago
- ☆27Updated 5 years ago
- by others☆38Updated 7 years ago
- 锁主页驱动☆37Updated 6 years ago
- ☆26Updated 7 years ago
- network filter driver that control network send speed, based on windows tdi framework.☆31Updated last year
- 大表哥的Syscall-Monitor☆34Updated 5 years ago
- Map memory to user space and manipulate user memory, using capmon☆23Updated 6 years ago
- For Example. See Miro's Blog☆30Updated 2 years ago
- ☆31Updated 6 years ago
- x64 Kernel Hooks Detection☆24Updated 8 years ago
- enable libemu run pe file and add some good modify☆14Updated 6 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆28Updated 7 years ago
- 进程保护、进程过滤的小工程、主要亮点是在内核中对操作系统中的用户进行管理☆15Updated 10 years ago
- 解析静态库(Lib)文件,提取出所有函数信息,组织成自定义格式文件☆38Updated 11 years ago
- 卓然主动防御源码(可执行文件+完整源码+完整作品报告)☆15Updated 6 years ago
- A poc of embedding x64 code into x86 PE file☆17Updated 5 years ago
- An ark tool's driver☆40Updated 7 years ago
- createfile☆48Updated 9 years ago
- 寒江独钓 Windows内核安全编程☆44Updated 12 years ago
- copy of tdifw lib☆10Updated 7 years ago
- ☆14Updated 8 years ago
- The demo on Windows☆21Updated 9 years ago
- Windows过滤驱动-helloworld☆22Updated 9 years ago