Hello,
Test complete. PoC working - Kaspersky v13.0.1.4190 with default settings successfully prevented from work (including service). All job done from user mode - Kaspersky don't popup any warnings etc, all it hooks stay in place. GJ. Seems this method can be adopted for some malware usage.
Test complete. PoC working - Kaspersky v13.0.1.4190 with default settings successfully prevented from work (including service). All job done from user mode - Kaspersky don't popup any warnings etc, all it hooks stay in place. GJ. Seems this method can be adopted for some malware usage.
Ring0 - the source of inspiration