DTM05 / malwarecookbook

Automatically exported from code.google.com/p/malwarecookbook
0 stars 0 forks source link

New callback detections #11

Closed GoogleCodeExporter closed 8 years ago

GoogleCodeExporter commented 8 years ago
* KiNmiCallbackListHead 
(http://www.moonsols.com/2011/02/17/global-windows-callbacks-and-windbg/)
* IoRegisterPlugPlayNotification 
(http://www.securelist.com/en/analysis/204792157/TDSS_TDL_4)

Original issue reported on code.google.com by michael.hale@gmail.com on 2 Mar 2011 at 1:40

GoogleCodeExporter commented 8 years ago
PnP will be added in 2.1 alpha release. KiNmiCallbackListHead will not be added 
(not important really)

Original comment by michael.hale@gmail.com on 19 Oct 2011 at 1:20