Skip to content

Groszekk/P4tch3r

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

7 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

P4tch3r

Windows x64 rootkit (tested on Windows 7)

It's PoC of patching NtTerminateProcess function by just overwriting instructions catching arguments and changing return value.
Example logging: alt text

About

Windows x64 rootkit

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published