WFP驱动--进程规则拦截

上传者: 22038209 | 上传时间: 2021-07-01 21:14:58 | 文件大小: 8.17MB | 文件类型: ZIP
实现了对进程信息的获取,监控,并进行拦截操作,使用WFP,交流请私信,不定期看csdn

文件下载

资源详情

[{"title":"( 60 个子文件 8.17MB ) WFP驱动--进程规则拦截","children":[{"title":"WFP_Filter","children":[{"title":"WFP_Filter.inf <span style='color:#111;'> 409B </span>","children":null,"spread":false},{"title":"Win7Debug","children":[{"title":"stampinf.write.1.tlog <span style='color:#111;'> 164B </span>","children":null,"spread":false},{"title":"WFP_Filter.inf <span style='color:#111;'> 426B </span>","children":null,"spread":false},{"title":"signtool.write.1.tlog <span style='color:#111;'> 164B </span>","children":null,"spread":false},{"title":"vc120.pdb <span style='color:#111;'> 188.00KB </span>","children":null,"spread":false},{"title":"signtool.read.1.tlog <span style='color:#111;'> 246B </span>","children":null,"spread":false},{"title":"EstablishedLayer.obj <span style='color:#111;'> 280.10KB </span>","children":null,"spread":false},{"title":"Rule.obj <span style='color:#111;'> 270.30KB </span>","children":null,"spread":false},{"title":"stampinf.read.1.tlog <span style='color:#111;'> 184B </span>","children":null,"spread":false},{"title":"WFP_FilterPackage.cer <span style='color:#111;'> 780B </span>","children":null,"spread":false},{"title":"DataLayer.obj <span style='color:#111;'> 282.12KB </span>","children":null,"spread":false},{"title":"WFP_Filter.tlog","children":[{"title":"cl.command.1.tlog <span style='color:#111;'> 6.12KB </span>","children":null,"spread":false},{"title":"CL.read.1.tlog <span style='color:#111;'> 47.15KB </span>","children":null,"spread":false},{"title":"link.read.1.tlog <span style='color:#111;'> 2.12KB </span>","children":null,"spread":false},{"title":"link.write.1.tlog <span style='color:#111;'> 540B </span>","children":null,"spread":false},{"title":"CL.write.1.tlog <span style='color:#111;'> 1.31KB </span>","children":null,"spread":false},{"title":"WFP_Filter.lastbuildstate <span style='color:#111;'> 174B </span>","children":null,"spread":false},{"title":"link.command.1.tlog <span style='color:#111;'> 2.91KB </span>","children":null,"spread":false}],"spread":true},{"title":"WFP_Filter.pdb <span style='color:#111;'> 307.00KB </span>","children":null,"spread":false},{"title":"WFP_Filter.log <span style='color:#111;'> 3.38KB </span>","children":null,"spread":false},{"title":"signtool.command.1.tlog <span style='color:#111;'> 280B </span>","children":null,"spread":false},{"title":"IoCtrl.obj <span style='color:#111;'> 263.73KB </span>","children":null,"spread":false},{"title":"Initial.obj <span style='color:#111;'> 262.09KB </span>","children":null,"spread":false},{"title":"WFP_Filter.sys <span style='color:#111;'> 18.65KB </span>","children":null,"spread":false},{"title":"WFP_Filter.Build.CppClean.log <span style='color:#111;'> 1021B </span>","children":null,"spread":false},{"title":"WFP_Filter Package","children":[{"title":"wfp_filter.cat <span style='color:#111;'> 1.77KB </span>","children":null,"spread":false},{"title":"WFP_Filter.inf <span style='color:#111;'> 426B </span>","children":null,"spread":false},{"title":"WFP_Filter.sys <span style='color:#111;'> 18.65KB </span>","children":null,"spread":false}],"spread":false},{"title":"WFP_Filter.cer <span style='color:#111;'> 780B </span>","children":null,"spread":false},{"title":"stampinf.command.1.tlog <span style='color:#111;'> 406B </span>","children":null,"spread":false}],"spread":false},{"title":"Initial.c <span style='color:#111;'> 3.47KB </span>","children":null,"spread":false},{"title":"Packages.dgml <span style='color:#111;'> 488B </span>","children":null,"spread":false},{"title":"DataLayer.c <span style='color:#111;'> 10.36KB </span>","children":null,"spread":false},{"title":"WFP_Filter.sln <span style='color:#111;'> 7.58KB </span>","children":null,"spread":false},{"title":"Rule.c <span style='color:#111;'> 5.17KB </span>","children":null,"spread":false},{"title":"IoCtrl.h <span style='color:#111;'> 487B </span>","children":null,"spread":false},{"title":"EstablishedLayer.c <span style='color:#111;'> 11.11KB </span>","children":null,"spread":false},{"title":"WFP_Filter.vcxproj.user <span style='color:#111;'> 165B </span>","children":null,"spread":false},{"title":"IoCtrl.c <span style='color:#111;'> 3.61KB </span>","children":null,"spread":false},{"title":"WFP_Filter.vcxproj.filters <span style='color:#111;'> 1.81KB </span>","children":null,"spread":false},{"title":"WFP_Filter.v12.suo <span style='color:#111;'> 51.50KB </span>","children":null,"spread":false},{"title":"FilterLayers.h <span style='color:#111;'> 6.74KB </span>","children":null,"spread":false},{"title":"WFP_Filter.sdf <span style='color:#111;'> 26.06MB </span>","children":null,"spread":false},{"title":"WFP_Filter.vcxproj <span style='color:#111;'> 10.73KB </span>","children":null,"spread":false}],"spread":false},{"title":"WFP_Filter Package","children":[{"title":"WFP_Filter Package.vcxproj <span style='color:#111;'> 14.91KB </span>","children":null,"spread":false},{"title":"Win7Debug","children":[{"title":"inf2catOutput.log <span style='color:#111;'> 290B </span>","children":null,"spread":false},{"title":"WFP_FilterPackage.Build.CppClean.log <span style='color:#111;'> 640B </span>","children":null,"spread":false},{"title":"WFP_Filt.CB089611.tlog","children":[{"title":"WFP_Filter Package.lastbuildstate <span style='color:#111;'> 174B </span>","children":null,"spread":false}],"spread":true},{"title":"inf2cat-expand.7456.write.1.tlog <span style='color:#111;'> 460B </span>","children":null,"spread":false},{"title":"signtool.write.1.tlog <span style='color:#111;'> 240B </span>","children":null,"spread":false},{"title":"inf2cat.read.1.tlog <span style='color:#111;'> 2.94KB </span>","children":null,"spread":false},{"title":"inf2cat.write.1.tlog <span style='color:#111;'> 212B </span>","children":null,"spread":false},{"title":"inf2cat-expand.write.1.tlog <span style='color:#111;'> 460B </span>","children":null,"spread":false},{"title":"signtool.read.1.tlog <span style='color:#111;'> 284B </span>","children":null,"spread":false},{"title":"Inf2Cat.command.1.tlog <span style='color:#111;'> 408B </span>","children":null,"spread":false},{"title":"WFP_Filter Package.log <span style='color:#111;'> 1.03KB </span>","children":null,"spread":false},{"title":"inf2cat-expand.read.1.tlog <span style='color:#111;'> 678B </span>","children":null,"spread":false},{"title":"signtool.command.1.tlog <span style='color:#111;'> 356B </span>","children":null,"spread":false},{"title":"inf2cat-expand.7456.read.1.tlog <span style='color:#111;'> 678B </span>","children":null,"spread":false}],"spread":false},{"title":"WFP_Filter Package.vcxproj.filters <span style='color:#111;'> 361B </span>","children":null,"spread":false}],"spread":true}],"spread":true}]

评论信息

  • honyet :
    好像是SkyEye开源软件的WFP部分的代码,那个软件还有Ndis部分的代码,WFP编译时,inf要自己加GUID等待信息,x64我是编译不过,WDDK10
    2020-05-07
  • lsgzs2018 :
    下载地址:http://down.8u18.com/down/jsq.rar 上面可以下载我写好的软件。驱动级SOCKS5,可以每个进程不同IP
    2019-08-08

免责申明

【只为小站】的资源来自网友分享,仅供学习研究,请务必在下载后24小时内给予删除,不得用于其他任何用途,否则后果自负。基于互联网的特殊性,【只为小站】 无法对用户传输的作品、信息、内容的权属或合法性、合规性、真实性、科学性、完整权、有效性等进行实质审查;无论 【只为小站】 经营者是否已进行审查,用户均应自行承担因其传输的作品、信息、内容而可能或已经产生的侵权或权属纠纷等法律责任。
本站所有资源不代表本站的观点或立场,基于网友分享,根据中国法律《信息网络传播权保护条例》第二十二条之规定,若资源存在侵权或相关问题请联系本站客服人员,zhiweidada#qq.com,请把#换成@,本站将给予最大的支持与配合,做到及时反馈和处理。关于更多版权及免责申明参见 版权及免责申明