Detecting Rootkit Activity

Detects rootkit presence on compromised systems by identifying hidden processes, hooked system calls, modified kernel structures, hidden files, and covert network connections using memory forensics, cross-view detection, and integrity checking techniques. Activates for requests involving rootkit detection, hidden process discovery, kernel integrity checking, or system call hook analysis.

xalgord da30a78 12.9 KB Updated

File contents

xalgord/xalgorix/tree/main/internal/tools/skills/data/malware-analysis/detecting-rootkit-activity commit da30a78a78

Frequently asked questions

npx skillmds@latest add xalgord/detecting-rootkit-activity