Latest News
Showing posts with label kit. Show all posts
Showing posts with label kit. Show all posts

Protecting by hooking ZwOpenProcess

Posted by genesisdatabase on Thursday, 27 January 2011 , under , , , , , , , , , | comments (0)



Want to know how Antivirus and rootkits protect themselves from being terminated? You might have tried running Windows Task Manager and find it impossible to kill avp.exe by Kaspersky. This is because the process is being protected by a higher privilege, the kernel.  This article assume that you know how to write using Windows Driver Kit.

Article: http://unlmtd.wordpress.com/2007/07/27/protecting-by-hooking-zwopenprocess/

Rootkits | Subverting the Windows Kernel

Posted by genesisdatabase on Tuesday, 21 December 2010 , under , , , , , , , , , , , , , , , , , , , | comments (0)



Are you a programmer that loves to design malicious application?  Do you find malicious applications that you have made are easily detected by anti-virus software (oh come on, Fully Un-detectable (FUD) isn't going to last long)?  Do you know the difference of user and kernel space?  Ever wanted to be able to stay on the same level as the anti-virus as well as getting rid of it?

Take yourself into a whole new level by learning how to develop a rootkit!