The authors are malware researchers at ESET. This paper deals with: evolution of payloads and rootkits, bypassing code integrity checks, attacking Windows Bootloader, modern bootkit details (Win64/Olmarik and Win64/Rovnix), debugging bootkit with Bochs emulator and HiddenFsReader.
- CA
- For Business
- Resource Center
- White Papers
- Defeating x64: Modern Trends of Kernel-Mode Rootkits. Authors: Matrosov, Rodionov