BigHugger
sk Skill · meltedinhex

analyzing-windows-driver-malware

Analyzes malicious and vulnerable Windows kernel drivers (.sys) by parsing the PE for the native subsystem, identifying DriverEntry/IRP dispatch and IOCTL handlers, and flagging BYOVD and kernel-callback abuse. Activates for requests to analyze a Windows driver, examine a .sys sample, or assess a BYOVD/kernel driver threat.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
Pythonbyovdkernelioctlwindows-driverbashreverse-engineering
Host repository
meltedinhex/analyst-ai-pack
Version
1.0.0
Licence
Apache-2.0
Host stars
22
Host language
Python