navkrishna21 / Ransomware-DetectionLinks
Visual C++ console application to detect ransomware activity on Windows OS. It consists of a registry monitor, filesystem watcher and a process detector.
☆9Updated 5 years ago
Alternatives and similar repositories for Ransomware-Detection
Users that are interested in Ransomware-Detection are comparing it to the libraries listed below
Sorting:
- Windows IO Monitor( by using minifilter )☆9Updated 4 years ago
- Demonstrate the behavior of the tunnel cache on Windows☆10Updated 5 years ago
- ☆20Updated 5 years ago
- A small utility to run raw code chunks in the executable memory area.☆14Updated 10 years ago
- ☆28Updated 2 years ago
- An efficient tool for extracting files, directories, and alternate data streams directly from NTFS image files.☆21Updated last year
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆11Updated 3 months ago
- Formely KMon, a Windows Kernel Driver designed to prevent malware attacks by monitoring the creation of registry keys in common autorun l…☆21Updated 11 years ago
- Volatility 3 plugins to extract a module as complete as possible☆12Updated last year
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆20Updated last year
- Rootkit for Windows 32-bit☆6Updated 3 years ago
- ☆25Updated last year
- Windows file system driver which allows to block access to files at run-time (C/C++, C#, WDK, SDK)☆10Updated 2 years ago
- Collection of structures, prototype and examples for Microsoft Macro Assembler (MASM) x64.☆16Updated 4 years ago
- Malware Development☆11Updated 4 years ago
- Get random bytes from the TPM (tool + BCrypt RNG provider)☆17Updated 4 years ago
- Microsoft Windows real time file integrity monitoring and filtering using minifilter technology, this is was my university final project☆11Updated 10 years ago
- A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.☆27Updated 6 years ago
- Source code on the 1.44MB 3.5 floppy accompanying the Windows NT File System Internals book.☆16Updated 5 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 7 years ago
- INF Studio for easier working with driver installation files☆38Updated last year
- Debugger checks in 3 ways☆19Updated 7 years ago
- ☆28Updated 7 months ago
- Low-level MS Windows registry files analysis tools☆20Updated 9 years ago
- Hyper-V sockets☆29Updated 7 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- ☆17Updated 6 years ago
- Library to support cross-platform AES encryption☆12Updated 8 months ago
- research tool for the analysis of malicious pdf documents. make sure to run the installer first to get all of the 3rd party dlls installe…☆13Updated 11 years ago
- Tools for analyzing Windows containers and break container's isolation☆31Updated 2 years ago