xiaobfly / MemPE
一种通用的XOR加密后内存加载PE绕过杀毒软件的方法
☆11Updated 8 years ago
Related projects: ⓘ
- ☆26Updated 4 years ago
- ☆26Updated this week
- 进程行为分析工具☆14Updated 7 years ago
- ☆39Updated 4 years ago
- Windows NDIS 6.3 Protocol Driver that provides usermode access to an IsoSwitch or CrowdSwitch☆9Updated 6 years ago
- 卓然主动防御源码(可执行文件+完整源码+完整作品报告)☆14Updated 5 years ago
- Windows内核设计思想☆21Updated 7 years ago
- 进程保护、进程过滤的小工程、主要亮点是在内核中对操作系统中的用户进行管理☆15Updated 9 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆27Updated 6 years ago
- Https中间人劫持验证性库☆18Updated 7 years ago
- PE文件解析和加壳工具☆18Updated last year
- 安全卫士项目☆32Updated 7 years ago
- x64HOOK库☆18Updated 4 years ago
- 仿WPE拦截Socket☆15Updated 10 years ago
- ☆12Updated last month
- 无模块注入工程 VS2008☆11Updated 6 years ago
- 锁主页驱动☆37Updated 5 years ago
- ☆13Updated this week
- ☆14Updated this week
- 管道监视器,类似于spyxx之类的东西,一般用于监视目标进程的系统调用.关键词:detours+piep☆23Updated 10 years ago
- 稳定多线程中的inline hook☆15Updated 5 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆26Updated 6 years ago
- x64 Kernel Hooks Detection☆24Updated 7 years ago
- PE文件格式学习资料☆18Updated 6 years ago
- 逆的或者收集的别人家的代码☆26Updated 10 months ago
- 谷歌2011年开始开发的一款专注于速度的压缩,解压库,速度完胜zlib。☆13Updated 6 years ago
- PE Infector/Cryptor source code☆15Updated 7 years ago
- Windows工具类☆29Updated 7 years ago
- Windows 驱动开发基础函数库,供个人使用☆13Updated 4 years ago