A forum for reverse engineering, OS internals and malware analysis 

Ask your beginner questions here.
Forum Statistics Last post
Multiple threads reading data from a file
by Carlbyte  - Fri Sep 05, 2014 5:56 pm
11 Replies 
 11365 Views
 by Vrtule
 Sat Sep 06, 2014 12:16 am
Can you cahnge the memory protection?
by rnd.usr  - Sun Aug 24, 2014 7:07 am
5 Replies 
 6813 Views
 by Vrtule
 Fri Sep 05, 2014 12:46 pm
How to programatically acquire KPCR
by lorddoskias  - Sat Nov 19, 2011 10:48 pm
14 Replies 
 16882 Views
 by g4mbit
 Fri Sep 05, 2014 12:22 pm
might a "filesystem trap" help to stop a cryptoware?
by dalfa  - Sun Aug 31, 2014 10:18 am
0 Replies 
 3101 Views
 by dalfa
 Sun Aug 31, 2014 10:18 am
Windows 8.1 UAC Bypass
by TurlaBoy  - Sun Aug 24, 2014 2:06 pm
8 Replies 
 10825 Views
 by EP_X0FF
 Thu Aug 28, 2014 1:51 pm
Thread starting address in kernel drv @ win7 64
by rexor  - Thu Aug 14, 2014 9:20 pm
3 Replies 
 5320 Views
 by EP_X0FF
 Sat Aug 16, 2014 6:21 am
Message APC and/or Context switch
by Carlbyte  - Mon Aug 11, 2014 12:04 am
4 Replies 
 5430 Views
 by Vrtule
 Tue Aug 12, 2014 11:37 am
Which virtual machine do you recommend to use
by xiut  - Mon Aug 04, 2014 4:00 am
4 Replies 
 9820 Views
 by t4L
 Wed Aug 06, 2014 4:28 pm
What book do you recommend ?
by ranget  - Tue Oct 08, 2013 7:39 pm
11 Replies 
 18006 Views
 by minnie
 Tue Aug 05, 2014 4:50 pm
Newbie/Student
by 0rbit  - Wed Jul 16, 2014 1:31 pm
1 Replies 
 3889 Views
 by EP_X0FF
 Wed Jul 16, 2014 2:24 pm
4 Replies 
 6092 Views
 by tgwalt
 Tue Jul 15, 2014 2:53 pm
syscall proxying
by abas2run  - Sun Jun 08, 2014 9:33 am
2 Replies 
 3722 Views
 by rnd.usr
 Sat Jul 12, 2014 12:18 pm
1 Replies 
 3255 Views
 by Vrtule
 Fri Jul 11, 2014 11:01 am
FltSendMessage: Failed to send messages
by Carlbyte  - Mon Jun 16, 2014 2:36 pm
1 Replies 
 3830 Views
 by t4L
 Tue Jul 01, 2014 7:10 am
Memory Reclaim in DKOM
by Raheel  - Tue Jun 17, 2014 9:30 am
5 Replies 
 5848 Views
 by Vrtule
 Tue Jun 24, 2014 5:57 pm
IRP_MJ_SHUTDOWN Notification
by Carlbyte  - Thu May 15, 2014 4:02 pm
1 Replies 
 3199 Views
 by Carlbyte
 Mon Jun 16, 2014 7:46 pm
How to place files in \$Extend\ ?
by Microwave89  - Sat Jun 14, 2014 1:28 pm
1 Replies 
 3156 Views
 by EP_X0FF
 Sat Jun 14, 2014 2:41 pm
How do TASKMGR get process name in WINXP
by fsdhook  - Thu Jun 12, 2014 7:19 am
5 Replies 
 5897 Views
 by EP_X0FF
 Fri Jun 13, 2014 8:56 am
Learning exploitation ?
by radikal  - Tue Dec 18, 2012 9:14 pm
3 Replies 
 7331 Views
 by iTeach
 Thu May 22, 2014 2:13 pm
2 Replies 
 3626 Views
 by EP_X0FF
 Sun May 18, 2014 11:30 am
How does AV's fix file infections?
by rnd.usr  - Fri May 16, 2014 8:37 pm
2 Replies 
 4478 Views
 by Cch123
 Sun May 18, 2014 3:39 am
3 Replies 
 5945 Views
 by Vrtule
 Wed May 14, 2014 5:32 pm
From Binary get whole C&C.
by Marv3!ous  - Mon May 05, 2014 3:55 pm
1 Replies 
 3172 Views
 by Cody Johnston
 Tue May 06, 2014 5:22 am
External Functions
by Carlbyte  - Thu May 01, 2014 2:26 am
5 Replies 
 6199 Views
 by Vrtule
 Fri May 02, 2014 1:42 pm
CVE-2012-0151 sample
by s3treasure  - Tue Apr 22, 2014 7:55 am
1 Replies 
 3195 Views
 by TETYYSs
 Tue Apr 22, 2014 10:32 am
  • 1
  • 7
  • 8
  • 9
  • 10
  • 11
  • 20