waliedassar

Monday, January 27, 2020

Malformed PE Header Kernel Denial Of Service

›
This post is about a bug in the Windows Kernel that i recently discovered and reported to Microsoft. It lies in code responsible for parsin...
3 comments:
Saturday, April 4, 2015

VirtualBox Detection Via WQL Queries

›
Here i have tried to group most of the WMI classes that can be used to detect VirtualBox Virtual Machine. They are as follows: 1) Win32_N...
2 comments:
Tuesday, June 24, 2014

ShareCount As Anti-Debugging Trick

›
In this post i will share with you an Anti-Debugging trick that is very similar to the " PAGE_EXECUTE_WRITECOPY " trick mentioned...
2 comments:
Sunday, February 23, 2014

PE TimeDateStamp Viewer

›
In this this post, i will share with you a tiny tool that i wrote to discover all occurrences of TimeDateStamps in a PE executable. The to...
1 comment:
Tuesday, February 12, 2013

Kernel Bug #1 ProcessIoPriority

›
In this post i will show you the second kernel bug that i found in the   Kernel of Windows 7 SP1 (64-bit) . This one is in the " nt!N...
8 comments:
›
Home
View web version

About Me

walied
View my complete profile
Powered by Blogger.