A forum for reverse engineering, OS internals and malware analysis 

Forum for discussion about kernel-mode development.
Forum Statistics Last post
6 Replies 
 6269 Views
 by t4L
 Wed Jul 02, 2014 11:53 pm
14 Replies 
 21498 Views
 by EP_X0FF
 Wed Jul 02, 2014 4:24 am
New Patchguard in Windows 8
by Vrtule  - Sat Jan 05, 2013 10:46 pm
9 Replies 
 12538 Views
 by EP_X0FF
 Wed Jul 02, 2014 4:23 am
2 Replies 
 3727 Views
 by feryno
 Mon Jun 30, 2014 11:44 am
Suspend process creation
by Stylo  - Sat Jun 28, 2014 4:08 pm
3 Replies 
 4222 Views
 by Vrtule
 Sun Jun 29, 2014 11:57 am
How to get PEB32 of 32-bit process in WIN7X64
by myid  - Tue Jun 10, 2014 9:41 am
2 Replies 
 3837 Views
 by myid
 Fri Jun 27, 2014 2:22 am
Boot time driver
by RoxinAz  - Tue Jun 17, 2014 10:26 am
14 Replies 
 15243 Views
 by EP_X0FF
 Wed Jun 25, 2014 6:49 am
BSOD when walk IAT of NTOSKRNL.EXE
by fsdhook  - Tue Jun 17, 2014 8:35 am
14 Replies 
 12249 Views
 by fsdhook
 Sat Jun 21, 2014 2:37 am
A very difficult question about IRQL
by fsdhook  - Wed May 28, 2014 5:11 pm
4 Replies 
 4770 Views
 by fsdhook
 Wed Jun 04, 2014 2:32 am
Kernel Mode gethostbyname?
by fsdhook  - Tue May 27, 2014 2:49 am
1 Replies 
 2649 Views
 by Cr4sh
 Wed May 28, 2014 10:25 pm
The struct of CmKeyObjectType
by myid  - Thu May 22, 2014 7:15 am
5 Replies 
 5310 Views
 by myid
 Fri May 23, 2014 5:20 pm
TDI clientEventReceive end of stream
by Marc1  - Thu May 22, 2014 3:34 pm
0 Replies 
 2329 Views
 by Marc1
 Thu May 22, 2014 3:34 pm
2 Replies 
 3585 Views
 by fsdhook
 Thu May 22, 2014 7:10 am
Are usermode DLL files considered as drivers?
by r3shl4k1sh  - Thu May 08, 2014 2:40 pm
1 Replies 
 3011 Views
 by BKsky
 Sun May 11, 2014 5:56 am
Special user APC - thread termination
by Vrtule  - Tue Jan 21, 2014 9:17 am
1 Replies 
 3305 Views
 by c3ph
 Sun Apr 27, 2014 10:10 am
0 Replies 
 2360 Views
 by usman715
 Fri Apr 25, 2014 6:12 am
suggestions for mouse click / key press
by xcteam  - Mon Mar 24, 2014 8:42 pm
0 Replies 
 2655 Views
 by xcteam
 Mon Mar 24, 2014 8:42 pm
X64 Segmentation
by AaLl86  - Wed Feb 12, 2014 5:58 pm
0 Replies 
 2733 Views
 by AaLl86
 Wed Feb 12, 2014 5:58 pm
USB 2.0 windows kernel debugging cable
by sima  - Wed Jan 22, 2014 11:15 am
2 Replies 
 3693 Views
 by sima
 Thu Jan 23, 2014 12:03 pm
Registry Callback and granted access
by Vrtule  - Wed Nov 27, 2013 8:42 am
2 Replies 
 3950 Views
 by Vrtule
 Fri Jan 10, 2014 10:03 am
1 Replies 
 3170 Views
 by rinn
 Sun Jan 05, 2014 8:59 am
6 Replies 
 7544 Views
 by Xearinox
 Thu Dec 26, 2013 1:55 pm
How to get PID from process name
by Xearinox  - Wed Mar 13, 2013 11:08 pm
8 Replies 
 10738 Views
 by EP_X0FF
 Thu Dec 26, 2013 8:20 am
How to close file handle in SYSTEM process?
by myid  - Wed Dec 26, 2012 10:30 pm
22 Replies 
 23301 Views
 by EP_X0FF
 Thu Dec 26, 2013 8:18 am
Folder encryption/password protection
by Xearinox  - Sun Mar 10, 2013 5:51 pm
2 Replies 
 4585 Views
 by FileSystem_Driver
 Wed Dec 25, 2013 11:30 am
  • 1
  • 5
  • 6
  • 7
  • 8
  • 9
  • 14