Description: Kernel-level process monitoring source, 1. Can monitor the process by specifying the form name to prohibit the operation of the specified process. 2. Can be real-time monitoring of the machines which process is the creation, operation procedures and so on through the mount SSDT realize
- [ProcMon] - sysinternal of a process monitoring tool
- [Registry-spy] - registry monitoring program (including d
- [systthread] - new Visual c prepared for the process co
- [FileSpy] - a quite good document control procedures
- [ProcMon] - A monitoring process creation and exit e
- [Process_Mo18292312142004] - Process monitor c++ Realize Process moni
- [APIHook_Using_IAT] - IAT table to find using the system to Ho
- [wowWar] - Senior Advanced plug-in tutorial site fr
- [Miss920] - Miss920 monitor program behavior, the us
- [SPY] - Simple realization of kernel-mode proces
File list (Check if you may need any files):
ProcDeny
........\hookZwCreateSection
........\...................\buildchk_wnet_x86.log
........\...................\makefile
........\...................\objchk_wnet_x86
........\...................\...............\i386
........\...................\...............\....\procdeny.obj
........\...................\...............\....\ProcDeny.pdb
........\...................\...............\....\ProcDeny.sys
........\...................\...............\_objects.mac
........\...................\ProcDeny.c
........\...................\sources
........\ProcDeny
........\........\debug
........\........\ProcDeny
........\........\........\Debug
........\........\........\ProcDeny.cpp
........\........\........\ProcDeny.vcproj
........\........\........\ProcDeny.vcproj.MICROSOF-542E1A.Administrator.user
........\........\........\ProcDeny.vcproj.MICROSOF-90D705.Administrator.user
........\........\........\Release
........\........\ProcDeny.sln
........\........\release