Chaos-Rootkit is a x64 ring0 rootkit with process hiding, privilege escalation, and capabilities for protecting and unprotecting processes and ability to restrict access to files except for whitelisted process work seamlessly on the latest Windows versions.
https://github.com/ZeroMemoryEx/Chaos-Rootkit
Features
https://github.com/ZeroMemoryEx/Chaos-Rootkit
Features
- Hide process: This feature allows you to hide processes from listing tools via DKOM.
- Elevate specific process privileges : This feature enables you to elevate specific processes privilege .
- Restrict file access for user-mode applications except for the provided process ID
- Spawn elevated process: launch command prompt with elevated privileges .
- Unprotect all processes
- Protect a specific process with any given protection level (WinSystem, WinTcb, Windows, Authenticode, Lsa, Antimalware) .