Skip to content

Disable Kernel Patching Protection

Ivan Kirillov edited this page Feb 19, 2014 · 5 revisions
Description The ‘disable kernel patch protection’ value indicates that the malware instance is able to bypass or disable PatchGuard; thus it is capable of operating at the same level as the kernel and kernel mode drivers (KMD).
Relationships
References
Examples

Clone this wiki locally