6
0
mirror of https://github.com/JKornev/hidden synced 2024-06-30 19:02:03 +00:00
Commit Graph

115 Commits

Author SHA1 Message Date
JKornev
da777eb050 Memory leak fixes #3 (Verifier tests) 2017-01-31 23:03:37 +03:00
JKornev
1db58b922c Memory leak fixes #2 (Verifier tests) 2017-01-30 22:41:24 +03:00
JKornev
ca63ce3d31 Memory leak fixes (Verifier tests) 2017-01-29 18:43:42 +03:00
JKornev
d5db2383e7 Registry utils improvements 2017-01-07 23:28:40 +03:00
JKornev
c3705478b1 Stealth mode first steps 2016-12-30 19:57:54 +03:00
JKornev
fbae5ffa57 Fix for possible IRQL violations 2016-12-29 22:49:07 +03:00
JKornev
67355c72c4 Fix for BSOD and vmware.conf 2016-12-28 00:31:03 +03:00
JKornev
8a9ba43e23 Added valid error codes 2016-12-27 00:52:30 +03:00
JKornev
32f2da5145 Fix for status output 2016-12-27 00:33:22 +03:00
JKornev
1b643e5e84 Configs installation to registry 2016-12-25 23:57:05 +03:00
JKornev
432a731aac hiddencli supports install\uninstall stuff 2016-12-23 23:31:31 +03:00
JKornev
4f3e364d72 /install and /uninstall commands 2016-12-23 03:05:34 +03:00
JKornev
93ea859610 Load configs improvements 2016-12-22 00:05:40 +03:00
JKornev
a2a8cb9ad1 Merge branch 'master' of https://github.com/JKornev/hidden 2016-12-21 23:45:05 +03:00
JKornev
f24aca20ec Comments update 2016-12-21 23:44:44 +03:00
Jora Kornev
3f74cccf7b Update README.md 2016-12-19 15:15:23 +03:00
JKornev
79cec65cf2 Driver loads configs from registry 2016-12-18 21:12:42 +03:00
JKornev
1c2c7dc3e4 Added /config command 2016-12-16 00:09:42 +03:00
JKornev
7c522d760f Added new cli mode /multi 2016-12-15 02:30:31 +03:00
JKornev
5d611535e7 Added 'state' command 2016-12-12 23:41:11 +03:00
JKornev
146af98691 Fixed issue with avoiding parent process checking and etc 2016-12-10 14:23:04 +03:00
JKornev
fbbb57c346 Multiple fixes
- Fixed issue with RuleId
- Added loading of the new commands
- Fixed issue with inherit\apply flags
- Fixed invalid type issue for Protect\Ignore commands
etc
2016-12-10 00:36:56 +03:00
JKornev
0959938a6a Added 'query' command 2016-12-09 23:27:28 +03:00
JKornev
84947c69aa Added 'protect', 'unprotect', 'unignore' 2016-12-08 23:07:00 +03:00
JKornev
eceaaf829f Added 'ignore' command to hiddencli 2016-12-07 02:19:54 +03:00
JKornev
93a78b2680 Added hiddencli commands 'hide' and 'unhide' 2016-12-07 00:15:11 +03:00
JKornev
1358effe89 Design for the commands 2016-12-06 01:37:18 +03:00
JKornev
96c5e6eb40 HiddenCLI first steps 2016-12-04 22:27:46 +03:00
Jora Kornev
241e8bb296 Update todo.txt 2016-11-10 11:20:37 +03:00
JKornev
86458caf5d VMware tests 2016-10-27 23:08:59 +03:00
JKornev
3851dcd17d Multiple changes
- Fixed issue with signing Release driver builds
- Renamed all Nt* functions to Zw* (access denied fix, KTHREAD!PreviousMode)
- Added "apply to all processes" feature for adding exluded\protected images api
- Fixed sync issues for process table, sync primitives moved to external code
etc
2016-10-19 00:35:52 +03:00
JKornev
3e5e5e8679 Fixes for API and x64 compilation 2016-10-15 18:11:11 +03:00
JKornev
0332732253 Removed unused code 2016-10-15 13:28:21 +03:00
JKornev
3c19ea50d6 Removed unused project settings 2016-10-15 03:16:38 +03:00
JKornev
e0d700635b Added x64 support 2016-10-15 02:47:05 +03:00
JKornev
aed101fa17 Added Wow64 redirection support 2016-10-15 02:39:31 +03:00
JKornev
6b0777c4de Added new process exclusion tests 2016-10-15 00:36:57 +03:00
JKornev
127c0b9c86 Added tests for ps protection\exclusion 2016-10-14 00:29:53 +03:00
JKornev
98014e750e Major changes
- Fixed BSOD on driver deinitialization step
- Fixed resources leak in the reg filter
- Fixed path normalization function
- Added support for inherit type in predefined process monitor configs
- Added support for opening protected processes by subsystem
- Added tests for protected processes
and other little fixes
2016-10-11 00:45:07 +03:00
JKornev
8a7929b310 Added Get\Set ps state ability
Fixed issue with DeviceIOControl output
Fixed issues in the PsRule & PsTable
2016-09-22 23:17:14 +03:00
JKornev
b9e7f2c015 Added ps path normalization to the hiddenlib 2016-09-19 23:21:51 +03:00
JKornev
4c3047c669 Added path normalization to the ps monitor 2016-09-19 23:20:44 +03:00
JKornev
22fdb1d00b Added tests for Reg filter 2016-09-18 17:26:33 +03:00
JKornev
d325a8d91a Added reg key\value path normalization 2016-09-18 17:26:00 +03:00
JKornev
59b989dcc5 Added new types of operations to Reg filter (set,query,delete value) 2016-09-18 17:23:37 +03:00
JKornev
935ffa787f Added the HiddenTests project that contain different tests for this solution 2016-09-11 14:42:39 +03:00
JKornev
184312875d Added path conversion to NT path to the FS filter interface 2016-09-11 14:40:33 +03:00
JKornev
1fdfa70156 Fix for issue with file\dir name duplication 2016-09-07 02:23:41 +03:00
JKornev
5d1787ffbc Added exclude\protect list loading from HiddenCLI to driver
Fixed memory leak on the CreateProcessNotifyCallback
2016-09-05 22:30:26 +03:00
JKornev
a25458a4c8 Added usermode implementation of the PsMonitor interface
and etc
2016-09-04 22:00:55 +03:00