Skip to content

This is the AV ("protection solution") used for my windows 10 rootkit main project. this includes the installer stager program, a service to perform automatic UM operations on boot and the protection driver used for SSDT, inline hooks detection, hidden processes by DKOM, vulnurable drivers validation and others.

Notifications You must be signed in to change notification settings

shaygitub/ProtectionSolution

Repository files navigation

ProtectionSolution

This is the AV ("protection solution") used for my windows 10 rootkit main project. this includes the installer stager program, a service to perform automatic UM operations on boot and the protection driver used for SSDT, inline hooks detection, hidden processes by DKOM, vulnurable drivers validation and others.

credits: loldrivers.io - vulnurable drivers list, collected SHA256 hashes with web scraping

About

This is the AV ("protection solution") used for my windows 10 rootkit main project. this includes the installer stager program, a service to perform automatic UM operations on boot and the protection driver used for SSDT, inline hooks detection, hidden processes by DKOM, vulnurable drivers validation and others.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published