Abstract:
Via filter drivers,host regulatory system manages computers perfectly.With the launch of Microsoft's 64-bit operating system,only signed drivers which cost money can be executed on windows x 64.For some reasons drivers cannot be signed so that host regulatory system is impossible for windows x 64.Unsigned driver problem becomes one of the most common problems,which lead to bad effect on portability or user experience,so it is urgent demand to execute unsigned drivers.In this paper,upon analysis of kernel assembler about verifying driver signature,we proposed a method to turn off the verification of driver signature.Then unsigned drivers can be executed.