socjordi / sauron
Windows Monitoring Agent (process creation + DLL loading monitor + network monitor + file system access monitor + etc)
☆61Updated 6 years ago
Alternatives and similar repositories for sauron:
Users that are interested in sauron are comparing it to the libraries listed below
- HTTP/HTTPS/DNS inspector (windows driver)☆26Updated 6 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆23Updated 7 years ago
- ☆28Updated 4 years ago
- ☆17Updated 6 years ago
- Open Source Libraries Collection☆24Updated 9 years ago
- Static Library For Windows Drivers☆33Updated 2 months ago
- A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.☆27Updated 6 years ago
- ☆31Updated 4 years ago
- it can extract functions from .dll, .exe, .sys and it be work! :)☆38Updated 5 years ago
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆27Updated 7 years ago
- A driver to intercept low level windows events☆63Updated 5 years ago
- Trace events in real time sessions☆45Updated last year
- Simple AntiVirus Driver example☆38Updated 7 years ago
- Easy Transparent Encrypted File System Based on Minifilter File System Driver☆34Updated 3 months ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Updated 7 years ago
- Windows Sandbox Framework☆37Updated 3 years ago
- ☆33Updated 4 years ago
- Windows Console Monitor☆34Updated 5 years ago
- map driver to memory☆25Updated 6 years ago
- PoC executable packer using resources☆31Updated 8 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆55Updated 6 years ago
- ☆33Updated 3 years ago
- c++ implementation of windows heavens gate☆68Updated 4 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆49Updated 4 years ago
- Driver Loader/BE Bypass/Win Malware(lol)☆34Updated 5 years ago
- ☆34Updated 4 years ago
- Win32 API and COM hooking/tracing.☆29Updated 8 years ago
- ☆24Updated 6 years ago
- ☆26Updated 7 years ago