差異處
這裏顯示兩個版本的差異處。
Both sides previous revision 前次修改 下次修改 | 前次修改 下次修改 Both sides next revision | ||
cpp:wdm [2019/09/04 09:49] tony [Articles] |
cpp:wdm [2019/09/04 10:41] tony [Articles] |
||
---|---|---|---|
行 8: | 行 8: | ||
* [[cpp:wdm:hlk:NonPagedPool_Error|Non-zero Code Integrity statistic found: Execute Pool Type Count]] | * [[cpp:wdm:hlk:NonPagedPool_Error|Non-zero Code Integrity statistic found: Execute Pool Type Count]] | ||
* [[cpp:wdm:hlk:Failed_to_receive_PNP_IRP|Failed to receive IRP_MN_REMOVE_DEVICE after receiving IRP_MN_SURPRISE_REMOVAL]] | * [[cpp:wdm:hlk:Failed_to_receive_PNP_IRP|Failed to receive IRP_MN_REMOVE_DEVICE after receiving IRP_MN_SURPRISE_REMOVAL]] | ||
- | * [[cpp:wdm:security:analysis_with_BinScope|Analysis with BinScope]] | + | * [[cpp:wdm:security:analysis_with_BinScope|Analysis driver with BinScope]] |
+ | * [[cpp:wdm:security:eclypsium_Screwed-Drivers_detection|Eclypsium screwed drivers detection]] | ||
===== Resource ===== | ===== Resource ===== | ||
* [[https://docs.microsoft.com/en-us/windows-hardware/drivers/kernel/determining-whether-the-operating-system-is-running-in-safe-mode|Determining Whether the Operating System Is Running in Safe Mode]] 不支援可回傳STATUS_NOT_SAFE_MODE_DRIVER | * [[https://docs.microsoft.com/en-us/windows-hardware/drivers/kernel/determining-whether-the-operating-system-is-running-in-safe-mode|Determining Whether the Operating System Is Running in Safe Mode]] 不支援可回傳STATUS_NOT_SAFE_MODE_DRIVER |