toringzhang / MemoryModule
自己实现LoadLirbrary,GetProcAdd,FreeLirbrary等函数的功能,比特币病毒wcry就是用了这一功能
☆17Updated 7 years ago
Related projects ⓘ
Alternatives and complementary repositories for MemoryModule
- 驱动层拦截web访问源码☆29Updated 6 years ago
- 安全卫士项目☆32Updated 7 years ago
- 一个早期的抗启发式查杀的WIN32免杀壳☆44Updated 11 years ago
- 逆的或者收集的别人家的代码☆27Updated last month
- opensc RAT from http://hi.baidu.com/yycblog/item/b8f0cdf9c1f945c10cd1c8da☆12Updated 10 years ago
- a simple app like CKnife☆12Updated 6 years ago
- 进程行为分析工具☆14Updated 7 years ago
- ☆20Updated 7 years ago
- 新的注入方式☆11Updated 6 years ago
- 稳定多线程中的inline hook☆16Updated 5 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆24Updated 5 years ago
- windows inlinehook R3 R0☆11Updated 6 years ago
- ☆40Updated 5 years ago
- Basic Injector running on x64 machines that is able to load into x64 AND x86 processes☆20Updated 5 years ago
- A C++ API which is useful for Win32. Includes a communication subsystem.☆14Updated 7 years ago
- 感染MBR 下载并运行文件。☆33Updated 2 years ago
- DNS反弹shell客户端☆12Updated 8 years ago
- base on winHttp to develep download☆11Updated 6 years ago
- 精简之后的老东西☆33Updated 8 years ago
- ☆18Updated 8 years ago
- Kernel (Ring0) - SSDT unhook driver☆13Updated 6 years ago
- PEBFake(修改PEB 伪装当前进程路径、参数等)☆49Updated 3 years ago
- 逆向小红伞杀毒软件驱动——avdevprot☆22Updated 6 years ago
- 锁主页驱动☆37Updated 5 years ago
- reversed emet tool☆24Updated 12 years ago
- PE Infector/Cryptor source code☆15Updated 7 years ago
- 基于WinDivert实现的一个包过滤与截断程序☆12Updated 6 years ago
- 对windows-api内容进行自动审查和过滤监控☆14Updated 7 years ago