OK, minifilter is the right solution
WDF - filter driver for sandbox
-
29-06-2022 - |
Question
I want to intercept file (ReadFile, WriteFile) operations and registry calls of some program. I decided that filter driver will be the best solution. Is it possible to do that from WDF or I need to learn WDM? Are there any samples?
Solution
Licensed under: CC-BY-SA with attribution
Not affiliated with StackOverflow