Skip to content

Kernel-level rootkit hiding specific Windows files

Notifications You must be signed in to change notification settings

robopyh/KMDF_hooking

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 

Repository files navigation

KMDF_hooking

Kernel-level driver hooking the SSDT ZwQueryDirectoryFile function (Win7 and above).
Hides files, that has the specific prefix: "hide_".

About

Kernel-level rootkit hiding specific Windows files

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages