a blog primarily about file systems and file system filters. might also touch on other windows kernel debugging and programming issues...
Thursday, September 13, 2012
Interesting article
I'm pretty swamped at work so I won't post anything this week, but I'd like to share an article that I found interesting. It's about some malware, Backdoor.Proxybox, that hooks NTFS directly. This is the page on Symantec's blog: Backdoor.Proxybox: Kernel File System Hooking.
No comments:
Post a Comment