HIDEDRV
S0135 · Windows
HIDEDRV is a rootkit used by APT28. It has been deployed along with Downdelph to execute and hide that malware.
ATT&CK S0135
Sigma rules0
YARA rules0
Live IOCs0