Skip to content

Latest commit

 

History

History
9 lines (7 loc) · 431 Bytes

README.md

File metadata and controls

9 lines (7 loc) · 431 Bytes

Windows System Call Monitoring

A kernel driver monitoring system calls invoked by all the processes running in a Windows 7 32bit SP1 system.

Key Features

  1. monitoring system calls invoked at the kernel level, through a driver
  2. 151 system calls are monitored (by far the largest set to our best knowledge)
  3. automated driver signing, installing and uninstalling
  4. system calls can be stored locally or in the cloud