Description: Delphi下真正隐藏进程的代码,由VC的代码转成D的,不是采用hook的方法实现的,真正从物理内存中去隐藏,绝大部分进程查看器找不着,效果不错-Delphi genuine process of hidden code, the code by VC D conversion. instead of using the hook method, and from physical memory to conceal most of the process viewer could not find it. good results Platform: |
Size: 178253 |
Author:cy |
Hits:
Description: 一种俄罗斯人常用的隐藏进程和启动该服务的方法,一定会令大家耳目一新的。-Russians used a hidden process and the start of the service, we would certainly be refreshing. Platform: |
Size: 1024 |
Author:姜振 |
Hits:
Description: these are two functions that can be used to hide your just loaded dll, from the process peb. use one or another-these are two functions that can be used to hide your just loaded dll, from the process peb. use one or another Platform: |
Size: 102400 |
Author:tornado |
Hits:
Description: 用驱动隐藏指定进程,用任务管理器和360看不到-Specify the process used to hide drives, using Task Manager and 360 can not see Platform: |
Size: 404480 |
Author:yufeng |
Hits:
Description: 进程隐藏代理,可以隐藏指定的进程,通过驱动程序-The process of hidden agents, to hide the process designated by the driver Platform: |
Size: 156672 |
Author:北京海思科 |
Hits:
Description: 隐藏进程的一段代码,主要是为了隐藏运行软件的进程项,在任务管理器中没有显示-A section of the code to hide the process, mainly to hide the process of running software in the Task Manager does not show Platform: |
Size: 2048 |
Author:JH |
Hits:
Description: windows 系统下 隐藏 进程的代码 此代码使用了rootkit技术-windows system code to hide the process of the code used rootkit technology Platform: |
Size: 3072 |
Author:雪妖 |
Hits:
Description: 驱动级的隐藏进程代码,在驱动层通过替换ssdt地址表中的函数来隐藏进程-Drive-level code to hide the process, in the driver layer ssdt address by replacing the function table to hide the process of Platform: |
Size: 3072 |
Author:帅俊 |
Hits:
Description: 可以自动隐藏进程,在任务管理器不可见的例子,用VC编写-Can automatically hide the process in Task Manager is not visible example of the preparation with the VC Platform: |
Size: 189440 |
Author:王朝栋 |
Hits:
Description: 进delphi隐藏进程。这个源码很简单。用法很简单,直接在uses中加入以下单元HideProcess,在需要隐藏进程的地方直接MyHideProcess 就可以。具体代码是什么意思,我也不大清楚,需要的朋友照葫芦画瓢吧^_^,有个缺点是隐藏了的进程就没办法显示出来了,正在研究怎么弄,大家可以相互交流。QQ:7333358。下面是HideProcess单元源代码:-Hidden processes into delphi. This source is very simple. Usage is very simple, direct addition of the following units in the uses HideProcess, where the need to hide the process directly MyHideProcess you can. What is the specific code, I am not clear, a friend in need to copy or imitate it ^ _ ^, there is a drawback is that the process is no way to hide the display, and is studying how to get, we can communicate with each other. QQ: 7333358. The following is HideProcess unit source code: Platform: |
Size: 3072 |
Author:vsyour |
Hits:
Description: hidecon, utility rootkit for x64
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon -l (display process list)
hidecon -le display hidden processes (dbgprint)
hidecon -ld (load ioport3 driver) 加载驱动
hidecon -ud (unload ioport3 driver) 卸载驱动
hidecon -ph (hide process - ProcessId) 隐藏进程
hidecon -pu (unhide process - ProcessId) 显示进程
hidecon -pht (remove handle table entry - ProcessId)
hidecon -phi (reinsert handle table entry - ProcessId)
all commands a valid ProcessId, except -ld and -ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :)-hidecon, utility rootkit for x64
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon-l (display process list)
hidecon-le display hidden processes (dbgprint)
hidecon-ld (load ioport3 driver) 加载驱动
hidecon-ud (unload ioport3 driver) 卸载驱动
hidecon-ph (hide process- ProcessId) 隐藏进程
hidecon-pu (unhide process- ProcessId) 显示进程
hidecon-pht (remove handle table entry- ProcessId)
hidecon-phi (reinsert handle table entry- ProcessId)
all commands a valid ProcessId, except-ld and-ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :) Platform: |
Size: 2883584 |
Author:songjiayu |
Hits: