socjordi / sauron
Windows Monitoring Agent (process creation + DLL loading monitor + network monitor + file system access monitor + etc)
☆61Updated 6 years ago
Alternatives and similar repositories for sauron:
Users that are interested in sauron are comparing it to the libraries listed below
- A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.☆27Updated 6 years ago
- it can extract functions from .dll, .exe, .sys and it be work! :)☆38Updated 5 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆26Updated 6 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆23Updated 7 years ago
- C++ library for low-level Windows development☆73Updated 11 months ago
- Trace events in real time sessions☆44Updated last year
- Open Source Libraries Collection☆24Updated 9 years ago
- View handles and object for each object type☆62Updated 5 years ago
- ☆33Updated 4 years ago
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- ☆28Updated 4 years ago
- A minifilter driver preserves all modified and deleted files.☆81Updated 9 years ago
- ☆34Updated 4 years ago
- a sandbox project by sudami☆17Updated 6 years ago