Commit Graph

77 Commits

Author SHA1 Message Date
qtkite
2fbc1a33d7 more hooks xd 2021-06-08 01:18:24 +10:00
qtkite
ef01b706cc Merge branch 'main' of https://github.com/qtKite/defender-control into main 2021-06-08 00:49:37 +10:00
qtkite
3a4cc3d0ee start av 2021-06-08 00:49:35 +10:00
qtKite
767d634ab7
Update README.md 2021-06-07 23:53:20 +10:00
qtkite
e2dfc8ae61 Merge branch 'main' of https://github.com/qtKite/defender-control into main 2021-06-07 23:04:21 +10:00
qtkite
c449f56fb7 wmic namespace + refactor 2021-06-07 23:04:18 +10:00
qtKite
b3b9fb7696
Update README.md 2021-06-07 23:02:17 +10:00
qtKite
94ce45bee5
Update README.md 2021-06-07 23:00:51 +10:00
qtkite
da7d72af19 vtable call dump 2021-06-07 22:58:51 +10:00
qtKite
135f2201e4
Update README.md 2021-06-07 22:58:34 +10:00
qtkite
9d62dc8562 Merge branch 'main' of https://github.com/qtKite/defender-control into main 2021-06-07 20:36:01 +10:00
qtkite
9ac65c6009 more wmic templates 2021-06-07 20:35:17 +10:00
qtKite
204e9d92b8
Update README.md 2021-06-07 06:06:55 +10:00
qtKite
b342cc1f2e
Update README.md 2021-06-07 06:06:48 +10:00
qtKite
6bc1663463
Update README.md 2021-06-07 05:40:17 +10:00
qtkite
f10206c8aa tamper protection subheading 2021-06-07 05:21:28 +10:00
qtkite
d5e11aeb7b wmic exploration 2021-06-07 05:20:38 +10:00
qtkite
41fc53e62e change of plans, going to use wmic 2021-06-07 05:15:02 +10:00
qtkite
e8ca1c6fd0 removed to-do 2021-06-07 04:06:46 +10:00
qtkite
10b7ce23e0 enable + disable routine hooks 2021-06-07 04:05:26 +10:00
qtkite
9a09527155 registry edits done 2021-06-06 22:28:04 +10:00
zhwu2697
4688174100 releasing handles after use 2021-06-06 20:58:35 +10:00
zhwu2697
3b11aacf3c refactored key 2021-06-06 20:53:46 +10:00
zhwu2697
efe72a25f0 added flags for dbg 2021-06-05 03:06:57 +10:00
zhwu2697
b6e8f369f9 fixed export 2021-06-05 02:39:06 +10:00
zhwu2697
a29d2d6aec implemented defender check 2021-06-05 02:36:56 +10:00
zhwu2697
5c81c88432 disable av logs 2021-06-04 23:42:44 +10:00
zhwu2697
e79e42e14e Update README.md 2021-06-04 23:35:11 +10:00
zhwu2697
8d52ca5682 removed lpclass 2021-06-04 23:34:47 +10:00
zhwu2697
98a7cd31a0 moved sub header 2021-06-04 23:32:47 +10:00
zhwu2697
0e530802d4 fixed header sizes 2021-06-04 23:32:16 +10:00
zhwu2697
68d601d4d5 analyzing logs 2021-06-04 23:30:53 +10:00
zhwu2697
321ba8f9cb fixed TODO 2021-06-04 23:17:17 +10:00
zhwu2697
06246f7c5b crashes fixed itself ig 2021-06-04 23:11:41 +10:00
zhwu2697
a66452c280 added full log dump + hook fixes 2021-06-04 23:06:12 +10:00
zhwu2697
f84196d4ed enable defender logs 2021-06-04 23:00:08 +10:00
zhwu2697
ac4497211d dump logs 2021-06-04 22:56:26 +10:00
zhwu2697
74b07c7933 hooked RegEnumKeyExW 2021-06-04 22:02:25 +10:00
zhwu2697
867d96156d fixed enum bug + wrong ret addrr 2021-06-04 15:44:19 +10:00
zhwu2697
65f8affe77 hk_RegConnectRegistryW
also fixed unreferenced calls
2021-06-04 14:42:40 +10:00
qtKite
744180f585 fixed hk_RegCreateKeyExW calling conv 2021-06-04 02:14:35 +10:00
qtKite
ef5d3a847c fixed get_func_addr syntax 2021-06-04 02:01:34 +10:00
qtKite
94947bcab9 implemented hooks 2021-06-04 01:58:47 +10:00
qtKite
c749b0ac7d cleared up TODO 2021-06-04 01:49:03 +10:00
qtKite
f9dbc5ce45 hk_RegCreateKeyExW template 2021-06-04 01:45:22 +10:00
qtKite
b924e2630f hk_RegSetValueExW hook 2021-06-04 01:31:16 +10:00
qtKite
bd02aa4a82 handle command hook test 2021-06-03 22:26:11 +10:00
qtKite
7c3cd899d9 included pattern 2021-06-03 21:58:02 +10:00
qtKite
5d73b3d1fc activation routine hook 2021-06-03 21:56:23 +10:00
qtKite
de9d832cdf str helper 2021-06-03 21:29:38 +10:00