Protect process fsfilter driver. Windows x64
☆36Apr 11, 2016Updated 9 years ago
Alternatives and similar repositories for protect-process
Users that are interested in protect-process are comparing it to the libraries listed below
Sorting:
- Block process execute kernel driver for Windows x64☆19Apr 7, 2016Updated 9 years ago
- ☆14Jun 27, 2017Updated 8 years ago
- An aggregate of tools used in the core of vmp_dbg plus other parsing utils to parse vmp bc.☆16Oct 18, 2016Updated 9 years ago
- ☆17Mar 3, 2016Updated 9 years ago
- UI application that can compare PE images in memory or in raw PE file☆19Feb 17, 2014Updated 12 years ago
- Wow64 syscall hook☆43May 28, 2017Updated 8 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- wow64 syscall filter☆13Nov 12, 2014Updated 11 years ago
- analyze the content of the pe file on windows, and shell(pack) function for windows drivers.☆11Nov 9, 2018Updated 7 years ago
- A system call tracer☆10Sep 22, 2014Updated 11 years ago
- ☆14Aug 15, 2018Updated 7 years ago
- An av windows engine with file guard and compress file enumator☆12Aug 25, 2018Updated 7 years ago
- ☆14Jan 10, 2017Updated 9 years ago
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Mar 13, 2017Updated 8 years ago
- anti-virtualmachine with C!☆23Apr 10, 2016Updated 9 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆78Aug 12, 2015Updated 10 years ago
- Kernel Context [template c++] Library - K C L. Your stl for work in linux/windows kernel !!!☆11Jul 24, 2018Updated 7 years ago
- ☆11Mar 11, 2015Updated 10 years ago
- Windows Kernel Driver - Create a driver device in TDI layer of windows kernel to capture network data packets☆36Jul 21, 2014Updated 11 years ago
- Various libraries focused on examining/parsing NTFS-specific structures☆16Oct 25, 2015Updated 10 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Dec 5, 2017Updated 8 years ago
- Bypass antivirus with dynamic import. Hide the api(s) used.☆28Apr 2, 2016Updated 9 years ago
- Hidden monitoring and blocking Android apps☆10May 2, 2017Updated 8 years ago
- Class implementation of PowerLoader injection technique☆32Dec 23, 2016Updated 9 years ago
- ☆12Feb 19, 2017Updated 9 years ago
- Automatically exported from code.google.com/p/guardlite☆11Jul 2, 2015Updated 10 years ago
- ☆36Oct 29, 2020Updated 5 years ago
- XDK is a fully featured C++ wrapper library for Windows kernel development☆21Jan 20, 2016Updated 10 years ago
- Detect the SCI in windows.☆11Mar 23, 2017Updated 8 years ago
- more at http://www.zer0mem.sk/?p=271☆12Jun 11, 2013Updated 12 years ago
- Hidden module/dll detector for windows apps☆15May 21, 2017Updated 8 years ago
- Minifilter Driver☆15Feb 10, 2017Updated 9 years ago
- a network filter using NDIS hook technique☆19Mar 28, 2013Updated 12 years ago
- Windows hard shutdown shellcode. Don't need administrator rights.☆14Mar 31, 2016Updated 9 years ago
- Shareds for kernel developement☆29Dec 23, 2013Updated 12 years ago
- WoW64 -> x64☆18Oct 1, 2016Updated 9 years ago
- midfunction d3d basehook for winxp, win7, win8, win10☆17Jan 21, 2019Updated 7 years ago
- WinPCAP for NDIS 6.x☆14Jun 24, 2019Updated 6 years ago
- Lists work items being queued currently.☆14Jun 7, 2015Updated 10 years ago