文件名称:Windows-7-64-bit-process-hidden
介绍说明--下载内容均来自于网络,请自行研究使用
hidecon, utility rootkit for x64
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon -l (display process list)
hidecon -le display hidden processes (dbgprint)
hidecon -ld (load ioport3 driver) 加载驱动
hidecon -ud (unload ioport3 driver) 卸载驱动
hidecon -ph (hide process - ProcessId) 隐藏进程
hidecon -pu (unhide process - ProcessId) 显示进程
hidecon -pht (remove handle table entry - ProcessId)
hidecon -phi (reinsert handle table entry - ProcessId)
all commands a valid ProcessId, except -ld and -ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :)-hidecon, utility rootkit for x64
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon-l (display process list)
hidecon-le display hidden processes (dbgprint)
hidecon-ld (load ioport3 driver) 加载驱动
hidecon-ud (unload ioport3 driver) 卸载驱动
hidecon-ph (hide process- ProcessId) 隐藏进程
hidecon-pu (unhide process- ProcessId) 显示进程
hidecon-pht (remove handle table entry- ProcessId)
hidecon-phi (reinsert handle table entry- ProcessId)
all commands a valid ProcessId, except-ld and-ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :)
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon -l (display process list)
hidecon -le display hidden processes (dbgprint)
hidecon -ld (load ioport3 driver) 加载驱动
hidecon -ud (unload ioport3 driver) 卸载驱动
hidecon -ph (hide process - ProcessId) 隐藏进程
hidecon -pu (unhide process - ProcessId) 显示进程
hidecon -pht (remove handle table entry - ProcessId)
hidecon -phi (reinsert handle table entry - ProcessId)
all commands a valid ProcessId, except -ld and -ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :)-hidecon, utility rootkit for x64
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon-l (display process list)
hidecon-le display hidden processes (dbgprint)
hidecon-ld (load ioport3 driver) 加载驱动
hidecon-ud (unload ioport3 driver) 卸载驱动
hidecon-ph (hide process- ProcessId) 隐藏进程
hidecon-pu (unhide process- ProcessId) 显示进程
hidecon-pht (remove handle table entry- ProcessId)
hidecon-phi (reinsert handle table entry- ProcessId)
all commands a valid ProcessId, except-ld and-ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :)
(系统自动生成,下载前可以参看下载内容)
下载文件列表
64win7位进程隐藏+\ioport3.sys
.................\no_ds_pg.exe
.................\ntkrnlmp.exe
.................\osloader.exe
.................\sdk.cmd
.................\test.exe
.................\win64进程隐藏.bak
.................\win64进程隐藏.e
.................\使用教程\使用说明(3).jpg
.................\使用教程
64win7位进程隐藏+