Tag Archives: Filter Monitor

Filter Monitor 1.1.0: filter restore

Uploaded the new version of this little utility. Fixed some bugs (nothing serious). Now it has the capability to restore some types of filters that the user unregister. Basically, it can restore Create Process, Thread and Load Image callbacks.

Posted in Update | Tagged | 2 Comments

Filter Monitor 1.0.1

This week, after months of development of bigger projects, I found some time to windbg “ntoskrnl.exe” and write a utility. It is called Filter Monitor and shows some key filters installed by kernel mode components. “As you probably all know … Continue reading

Posted in Internals, News, Reversing | Tagged | 2 Comments