sugice / AzusaDefender
安全卫士项目
☆32Updated 7 years ago
Related projects ⓘ
Alternatives and complementary repositories for AzusaDefender
- 逆的或者收集的别人家的代码☆27Updated last month
- 驱动层拦截web访问源码☆29Updated 6 years ago
- ☆40Updated 5 years ago
- 进程行为分析工具☆14Updated 7 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆24Updated 5 years ago
- 稳定多线程中的inline hook☆16Updated 5 years ago
- 一个早期的抗启发式查杀的WIN32免杀壳☆44Updated 11 years ago
- 管道监视器,类似于spyxx之类的东西,一般用于监视目标进程的系统调用.关键词:detours+piep☆23Updated 10 years ago
- 锁主页驱动☆37Updated 5 years ago
- 卓然主动防御源码(可执行文件+完整源码+完整作品报告)☆15Updated 5 years ago
- windows inlinehook R3 R0☆11Updated 6 years ago
- 一些研究☆14Updated 4 years ago
- Basic Injector running on x64 machines that is able to load into x64 AND x86 processes☆20Updated 5 years ago
- ☆25Updated 4 years ago
- base on winHttp to develep download☆11Updated 6 years ago
- map driver to memory☆25Updated 6 years ago
- ☆20Updated 7 years ago
- Sysark全称system anti-rootkit,是我学习内核写的工具(2013年的代码,后续不会再更新),里面基本上所有的功能都是用内核实现的。这里只是实现了反rootkit部分功能,作为工具的话,本人觉得还欠完善,但作为学习,或有人需要。目前针对的是XP SP2,…☆27Updated 6 years ago
- 大表哥的Syscall-Monitor☆34Updated 5 years ago
- 自己实现LoadLirbrary,GetProcAdd,FreeLirbrary等函数的功能,比特币病毒wcry就是用了这一功能☆17Updated 7 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆21Updated 6 years ago
- PEBFake(修改PEB 伪装当前进程路径、参数等)☆49Updated 3 years ago
- Fixed memory overflow issue in ProcessHider.☆16Updated 6 years ago
- 内核级ARK工具。☆59Updated 8 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆26Updated 6 years ago
- a simple app like CKnife☆12Updated 6 years ago
- 小型主动防御引擎☆58Updated 8 years ago