Commit Graph

23 Commits

Author SHA1 Message Date
huoji
db8082d04a add new API 2025-05-22 17:37:52 +08:00
huoji
e160fd0d57 fix up 2025-04-25 16:08:22 +08:00
Huoji's
785f0da7fe 按照样本优化了一下 2025-04-23 03:48:16 +08:00
Huoji's
8cfd24ab43 修复一个导致崩溃的问题 2025-04-20 23:43:54 +08:00
huoji
13f5160ddc add grpc 2025-04-01 19:37:55 +08:00
Huoji's
f57ac27aa5 update 2025-03-22 01:59:30 +08:00
Huoji's
2f08a0264a 更新文件路径,优化结构体定义,调整日志级别,增加模块处理函数,修复导入逻辑,提升代码可读性和维护性。 2025-03-22 01:12:47 +08:00
huoji
a96ee2e166 fix up 2025-03-20 14:50:58 +08:00
Huoji's
3a6e331f31 update 2025-03-20 02:18:00 +08:00
huoji
232a7abcba 初步增加32位支持(没加全) 2025-03-19 20:47:26 +08:00
huoji
9b970ce8a2 修复沙箱功能和API实现
- 在沙箱中添加了对CreateProcessW的支持,整合了CreateProcessA和CreateProcessW的共同逻辑
- 实现了URLDownloadToFileW函数,增加了对可疑URL的检测
- 更新了API钩子以支持新的API功能
- 改进了错误处理和日志记录,确保更好的调试信息输出
- 调整了主函数中的恶意软件扫描和沙箱功能调用顺序,确保恶意软件扫描优先执行
2025-03-19 14:52:19 +08:00
Huoji's
9a44f20d5c update 2025-03-18 22:04:39 +08:00
huoji
53a4782b7a 修复主函数中的恶意软件扫描和沙箱功能调用顺序
- 将主函数中的沙箱功能调用注释掉,恢复恶意软件扫描功能的调用
- 注释掉了沙箱函数的实现,保持代码整洁
- 确保恶意软件扫描功能在主程序中优先执行
2025-03-18 20:50:45 +08:00
huoji
534b6a84a6 添加沙箱功能和API钩子支持
- 在沙箱中实现了新的功能,包括内存分配和API钩子初始化
- 更新了沙箱类,增加了对WFP引擎的支持
- 添加了多个API的实现,如GetLastError、InitializeCriticalSection等
- 修改了主函数以使用新的沙箱功能,替换了恶意软件扫描功能
- 更新了项目文件以包含新的源文件和API实现
- 改进了错误处理和日志记录功能
2025-03-18 20:49:18 +08:00
Huoji's
60c4ef5f58 Update project documentation and enhance malware detection engine
- Completely rewrite README.md with comprehensive project overview and technical details
- Add detailed explanation of antivirus engine architecture and detection strategies
- Implement multi-stage malware detection with machine learning, sandbox, and PE structure analysis
- Update project configuration and add new source files for enhanced detection capabilities
- Integrate XGBoost machine learning model with C++ export functionality
- Improve sandbox environment with advanced module and LDR data table handling
- Remove legacy Python prediction and training scripts in favor of C++ implementation
2025-03-09 21:59:22 +08:00
Huoji's
defe59ffe8 update 2025-03-09 03:19:40 +08:00
Huoji's
1cea516cf7 Add machine learning feature extraction for PE files
- Implemented MachineLearning class with ExtractFeatures method
- Updated project files to include new machine learning source and header files
- Modified main executable to call feature extraction
- Updated VSCode settings to include additional C++ headers
- Commented out previous file dumping code in main function
2025-03-09 02:05:07 +08:00
Huoji's
d2ed7936df fix up 2025-03-09 00:06:37 +08:00
huoji
c5a9c95575 fix up 2025-03-07 19:27:05 +08:00
Huoji's
8504a9c8f9 调不了了 终极大招了 2025-03-07 01:47:01 +08:00
huoji
2c18f7fd15 update 2025-03-06 18:39:01 +08:00
Huoji's
dbe2e6a92b fix 1 2025-03-06 04:28:34 +08:00
Huoji's
2ca572e225 添加项目文件。 2025-03-06 04:05:03 +08:00