A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Manager
-
Updated
Mar 26, 2019 - C
A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Manager
Kernel-mode process protection driver with user GUI
PsLoadedModuleList Unlinking through DKOM Manipulation
A DKOM hiding stuff for Linux, FreeBSD and NetBSD.
Add a description, image, and links to the dkom topic page so that developers can more easily learn about it.
To associate your repository with the dkom topic, visit your repo's landing page and select "manage topics."