15.1.5. 持久化¶
15.1.5.1. rootkit¶
KasperskyHook Hook system calls on Windows by using Kaspersky’s hypervisor
15.1.5.2. 免杀¶
BypassAntiVirus 远控免杀系列文章及配套工具
15.1.5.4. 后门¶
The Backdoor Factory Patch PE, ELF, Mach-O binaries with shellcode
KasperskyHook Hook system calls on Windows by using Kaspersky’s hypervisor
BypassAntiVirus 远控免杀系列文章及配套工具
The Backdoor Factory Patch PE, ELF, Mach-O binaries with shellcode