Published a new analysis of a kernel land rootkit loader for FK_Undead
https://www.gdatasoftware.com/blog/2024/12/38091-analysis-fk-undead #Rootkit #FK_Undead
https://www.gdatasoftware.com/blog/2024/12/38091-analysis-fk-undead #Rootkit #FK_Undead
A Kernel Land Rootkit Loader for FK_Undead
We discovered a Windows rootkit loader [F1] for the malware family FK_Undead. The malware family is known for intercepting user network traffic through manipulation of proxy configurations. To the best of our knowledge the rootkit loader hasn't been officially analyzed before.