All the vulnerabilities can be reproduced by running a combination of DC2 and BSODHook tools. Step by step instructions: - Get DC2.exe (Driver Path Verifier) from the latest Windows Driver Kit. - Login as unprivileged user. - Run "dc2 /hct /a". - Get BSODHook.exe from Matousec http://www.matousec.com/projects/windows-personal-firewall-analysis/plague-in-security-software-drivers.php - Click on "Load Driver" then click on "Find SSDT hooks" then "Add to probe list" and then "GO".