Profense SDK' 1.00 is Commercial Components & Libraries software design by FXSEC LTD. It runs on following operating system: WinXP,Windows2000,Windows2003,Windows Vista Starter,Windows Vista Home Basic,Windows Vista Home Premium,Windows Vista Business,Windows Vista Enterprise,Windows Vista Ultimate,Windows Vista Home Basic and has as system requirements: Minimum requirements - Windows 2000, your favourite IDE. Use Profense SDK to add proactive security capabilities to applications to ensure that your application is safe from various attacks, and once identified, an Intruder can be blocked from accessing the system (including non-network vectors of attacks)
Whats new in version 1.00:First public release.
Added support for AMD64 and IA64 systems.
Added support for multiprocessor environment.
Added support for SVM/VMX systems.
Added support for SMM management.
Added support for Nt object manager manipulation.
Added support for Patch Guard 2/3 manipulation.
Publisher review:Simple APIs of Profense SDK include powerful functions: multi
layer packet filter (transport layer and channel layer), system services monitor (SDT monitor), IDT
monitor, GDT monitor, LDT monitor, registry and filesystem access monitor, NT object manager
monitor, filesystem filtering interface, executive objects monitor (processes and threads), executable
objects monitor (executable images and sections), state-of-art hidden executive objects monitor
(SMM based), abnormal activity monitor (SMM based), abnormal activity monitor (VMM based,
including VMX & SVM interfaces), executive objects manipulation interface (using for hidden objects
in-memory heuristic search), Patch Guard manipulation interface (using for internal purposes),
interface for search of non-exported symbols in kernel environment, real-time instruction tracer
interface (using for catching suspicious interception of system services), interface for heuristic
detection of exploits (any kind of exploits, Trojans and viruses), IRP_MAJOR procedures monitor
(using for proactive defense`s purpose), hardware interrupt monitor (IRQ monitor, using for lowlevel
control of system activity), journal and history logger interface (applicable to any kind of
monitor), transport layer network monitor (TDI based filter), low-level network monitor (NDIS
based), TcpIp protocol suite (using for avoiding any malicious interception of network traffic), driver
- application communication interface (with two simultaneous channel type - Command channel
and Data channel, which renders asynchronous interface to communicate with kernel modules),
virtual address manipulation interface (search and enumeration of VAD list on per-process basis),
finite state machine for behavior-based detection (proactive defense decision module), network
firewall interface with flexible rule system (ALLOW/DENY/CONTENT_BLOCK/CONTENT_MODIFY
methods on any active network interface).
Requirements:Minimum requirements - Windows 2000, your favourite IDE
Operating system:WinXP,Windows2000,Windows2003,Windows Vista Starter,Windows Vista Home Basic,Windows Vista Home Premium,Windows Vista Business,Windows Vista Enterprise,Windows Vista Ultimate,Windows Vista Home Basic
Limitations:No limitations
Release notes:New Release