Skip to content

Disable Kernel Patching Protection

Ivan Kirillov edited this page Feb 21, 2014 · 5 revisions
Aliases
Description The ‘disable kernel patch protection’ value indicates that the malware instance is able to bypass or disable PatchGuard; thus it is capable of operating at the same level as the kernel and kernel mode drivers (KMD).
Relationships
Properties
    References
    Examples
    Clone this wiki locally