A forum for reverse engineering, OS internals and malware analysis 

Ask your beginner questions here.
Forum Statistics Last post
Hacker defender for 64 bit machines?
by ResearchMalware  - Mon Mar 12, 2012 9:44 am
2 Replies 
 3665 Views
 by ResearchMalware
 Tue Mar 13, 2012 4:59 am
binary image on the disk
by Tigzy  - Mon Feb 27, 2012 5:57 pm
47 Replies 
 38150 Views
 by Tigzy
 Thu Mar 08, 2012 9:38 pm
learning GDT
by _Lynn  - Mon Feb 20, 2012 10:14 pm
3 Replies 
 4188 Views
 by Kayaker
 Wed Feb 29, 2012 11:37 pm
Kernel Object Hijack
by osC7h  - Fri Feb 24, 2012 10:46 am
15 Replies 
 17066 Views
 by EP_X0FF
 Tue Feb 28, 2012 2:17 am
Detect TDL rootkit
by opc0de  - Mon Feb 27, 2012 11:04 am
5 Replies 
 6018 Views
 by Tigzy
 Mon Feb 27, 2012 3:26 pm
Get ImageFileName(Dos) from EPROCESS
by Hippey  - Sun Feb 26, 2012 12:54 pm
2 Replies 
 3941 Views
 by EP_X0FF
 Mon Feb 27, 2012 1:53 pm
IOCTL_SCSI_PASS_THROUGH_DIRECT and VmWare
by sima  - Fri Feb 17, 2012 10:32 pm
11 Replies 
 10599 Views
 by rkhunter
 Sat Feb 18, 2012 6:11 pm
Problem with UPX unpack
by Flamef  - Tue Jan 03, 2012 2:00 pm
17 Replies 
 21839 Views
 by Aleksandra
 Sat Feb 18, 2012 2:35 pm
Rootkit Research
by skeptre  - Sun Feb 12, 2012 7:06 pm
6 Replies 
 8460 Views
 by rkhunter
 Fri Feb 17, 2012 5:27 am
KD hardlock
by _Lynn  - Mon Feb 13, 2012 9:53 pm
1 Replies 
 3069 Views
 by everdox
 Wed Feb 15, 2012 12:30 am
Malware Removal Process
by ranget  - Sun Feb 05, 2012 11:05 pm
2 Replies 
 3892 Views
 by ranget
 Mon Feb 06, 2012 1:01 am
using DPC after interrupt completion
by noppy  - Tue Jan 31, 2012 12:17 pm
2 Replies 
 3978 Views
 by noppy
 Tue Jan 31, 2012 6:11 pm
WFP and FWPS_LAYER_ALE_ENDPOINT_CLOSURE_V6
by Vrtule  - Sun Jan 29, 2012 1:44 pm
2 Replies 
 3763 Views
 by Vrtule
 Mon Jan 30, 2012 6:16 pm
latest spyeye and download link ??
by Bowa  - Thu Jan 26, 2012 5:25 pm
1 Replies 
 3520 Views
 by EP_X0FF
 Thu Jan 26, 2012 5:28 pm
Crash on x64 when dereferencing LIST_ENTRY
by lorddoskias  - Wed Jan 25, 2012 9:36 pm
1 Replies 
 3544 Views
 by EP_X0FF
 Thu Jan 26, 2012 9:50 am
TDL4 Research
by limiter  - Thu Nov 10, 2011 9:55 pm
3 Replies 
 5626 Views
 by EP_X0FF
 Wed Jan 25, 2012 3:50 am
KdVersionBlock in x64
by lorddoskias  - Fri Jan 20, 2012 10:26 am
15 Replies 
 20770 Views
 by EP_X0FF
 Sat Apr 14, 2012 12:20 pm
what is course of action for access violation.
by _Lynn  - Mon Jan 16, 2012 5:26 am
2 Replies 
 3719 Views
 by _Lynn
 Mon Jan 16, 2012 5:43 pm
Detecting csrss in kernel
by xqrzd  - Fri Jan 13, 2012 11:35 pm
2 Replies 
 3731 Views
 by xqrzd
 Sun Jan 15, 2012 1:45 am
Path of the executable
by utsav.0202  - Tue Jan 10, 2012 7:44 am
5 Replies 
 7278 Views
 by EP_X0FF
 Fri Jan 13, 2012 2:52 pm
boot partition
by Kiuhnm  - Wed Jan 11, 2012 8:33 pm
2 Replies 
 3549 Views
 by Kiuhnm
 Fri Jan 13, 2012 11:19 am
Changing a value with windbg
by lorddoskias  - Thu Jan 12, 2012 9:09 pm
1 Replies 
 2956 Views
 by everdox
 Fri Jan 13, 2012 6:23 am
boot process (Windows)
by Kiuhnm  - Thu Jan 12, 2012 11:47 am
3 Replies 
 4161 Views
 by Kiuhnm
 Thu Jan 12, 2012 1:22 pm
How to get the DLL
by utsav.0202  - Fri Jan 06, 2012 10:32 am
2 Replies 
 4067 Views
 by EP_X0FF
 Fri Jan 06, 2012 5:20 pm
ntkrnlmp.exe
by Smerpy  - Mon Dec 26, 2011 2:58 pm
1 Replies 
 3772 Views
 by everdox
 Mon Dec 26, 2011 8:53 pm
  • 1
  • 12
  • 13
  • 14
  • 15
  • 16
  • 20