Awesome
Driver_Hide_And_Camouflage
Due to the use of a large number of Windows unexported functions, Need to modify InitAllOffSet() at Kernel_PDB.c
Win10 and Win11 tested for 40+hours without being detected by patchguard
Hide:
Driver loaded( Test_Drv.sys ),But ARK Not found:
Camouflage:
1:Test_Drv.sys -----> 360AntiHacker64.sys
Unsigned driver disguised as 360 driver
Look at the device name, this is my driver and device
2: Test_Drv.sys -----> EasyAntiCheat.sys