This experimental project allows you to scan in real-time new processes, DLLs and kernel-mode drivers with your custom Yara signatures. If a process, dll or driver matches one Yara rule, it is blocked from loading in the system, preventing a potential malware infection. The program works on all versions of Microsoft Windows 32-bit and 64-bit, however the feature to monitor and block DLLs works only on Vista+ OS.
Make sure to read the file Readme.txt to correctly install and use the program. Read also the EULA.txt that is the End User License Agreement for this product.
Home
http://www.novirusthanks.org/products/yaguard/
Download (freeware)