Kernel-level driver hooking the SSDT ZwQueryDirectoryFile function (Win7 and above).
Hides files, that has the specific prefix: "hide_".
-
Notifications
You must be signed in to change notification settings - Fork 5
robopyh/KMDF_hooking
Folders and files
Name | Name | Last commit message | Last commit date | |
---|---|---|---|---|
Repository files navigation
About
Kernel-level rootkit hiding specific Windows files
Topics
Resources
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published