Resources



Downloads
Debugging Tools for Windows 6.12.2.633 32-bit (.MSI File) [18.8 MB]
Debugging Tools for Windows 6.12.2.633 64-bit Native (.MSI File) [17.1 MB]
Windows Driver Kit Version 7.1.0 (.ISO File) [619 MB]
Windows SDK for Windows 7 and .NET Framework 4 32-bit (.ISO File) [567.3 MB]
Windows SDK for Windows 7 and .NET Framework 4 64-bit (.ISO File) [569.4 MB]

Books on Windows Device Driver Development
Name Author Publication
Windows 7 Device Driver Ronald Reeves Addison-Wesley
Developing Drivers with the Windows Driver Foundation P.Orwick, G.Smith Microsoft Press
Programming the Microsoft Windows Driver Model (2nd Ed.) Walter Oney Microsoft Press
Introduction to Windows Driver Foundation P.Viscarola, T.Mason, et al OSR Press
The Windows 2000 Device Driver Book (2nd Ed.) A.Baker & J.Lozano Prentice Hall
Windows NT Device Driver Development P.Viscarola & T.Mason OSR Press
Developing Windows NT Device Drivers E.Dekker & J.Newcomer Addison-Wesley
Writing Windows WDM Device Drivers Chris Cant CMP Books

Books on Windows Internals, Systems Programming and Debugging
Name Author Publication
Windows Debugging Practical Foundations Dmitry Vostokov OpenTask
x64 Windows Debugging Practical Foundations Dmitry Vostokov OpenTask
Memory Dump Analysis Anthology (Volume 4) Dmitry Vostokov OpenTask
Memory Dump Analysis Anthology (Volume 3) Dmitry Vostokov OpenTask
Memory Dump Analysis Anthology (Volume 2) Dmitry Vostokov OpenTask
Memory Dump Analysis Anthology (Volume 1) Dmitry Vostokov OpenTask
Advanced Windows Debugging M.Hewardt, D.Pravat Addison-Wesley
Advanced .NET Debugging M.Hewardt Addison-Wesley
Windows Internals (5th Ed.) M.Russinovich, D.Solomon & A.Ionescu Microsoft Press
Microsoft Windows Internals (4th Ed.) M.Russinovich & D.Solomon Microsoft Press
Debugging Applications for Microsoft .NET and Microsoft Windows John Robbins Microsoft Press
Windows NT File System Internals R.Nagar & T.Mason OSR Press
Windows via C/C++ J.Richter & C.Nasarre Microsoft Press
Windows NT/2000 Native API Reference Gary Nebbett MTP
Undocumented Windows 2000 Secrets: A Programmer's Cookbook Sven B. Schreiber Addison-Wesley
Windows 2000 Kernel Debugging Steven McDowell Pearson Education
Undocumented Windows NT P.Dabak, S.Phadke & M.Borate M&T Books

Books on Windows Reverse Engineering, Rootkits & Security
Name Author Publication
Malware Analyst's Cookbook and DVD M.Ligh, S.Adair, B.Hartstein & M.Richard Wiley
The Rootkit Arsenal Bill Blunden Wordware
The Art of Computer Virus Research and Defense Peter Szor Addison-Wesley
Rootkits: Subverting the Windows Kernel G.Hoglund & J.Butler Addison-Wesley
Reversing: Secrets of Reverse Engineering Eldad Eilam Wiley
Hacker Disassembling Uncovered Kris Kaspersky A-List Publishing
Hacking: The Art of Exploitation Jon Erickson No Starch Press
Exploiting Software: How to Break Code G.Hoglund & G.McGraw Addison-Wesley
Professional Rootkits Ric Vieler Wrox P2P
Rootkits Spyware/Adware, Keyloggers and Backdoors Oleg Zaytsev A-List
Disassembling Code Vlad Pirogov A-List

Web Sites
Windows Hardware Development
Crash Dump Analysis and Debugging Portal
OSR Online
SysInternals (acquired by Microsoft)
NDIS Developers Reference
Undocumented Windows NT/2000 Native Functions
Uninformed
Open Reverse Code Engineering
CodeBreakers Journal
Virus Bulletin
Reverse Engineering Team
RootKit

Blogs
Advanced Windows Debugging and Troubleshooting (Microsoft GES Blog)
Windows USB Core Team Blog
Windows Driver Kit (WDK) Documentation Blog
A Hole in my Head (Doron Holan's Blog)
Pointless Blathering (Peter Weiland's Blog)
Stuff mostly about Windows Fundamentals (VolkerW's Blog)
Mark Russinovich's Blog (on Technet)
Nynaeve (Ken Johnson's Blog)
Confessions of an Old Fogey (Larry Osterman's Blog)
The Old New Thing (Raymond Chen's Blog)
Windows, WinDBG, IDA, and Oxford commas (Scott Noone's Blog)

Newsgroups & Forums
Windows WDK and Driver Development
Windows Filtering Platform (WFP)
Winsock Kernel (WSK)