Full Disclosure mailing list archives

how to hide files, services and process in windows 2k/xp/2k3 box


From: "fatb" <fatb () security zz ha cn>
Date: Sun, 10 Jul 2005 20:08:13 +0800

hi all guys 

    I'm trying to write a rootkit to hide files,services and process

in windows 2k/xp/2k3 box ,and it would not be detected by icesword,rkdetector

and so on.

    Anybody could be kind enough to give me some tips or suggestions , thx alot!


BTW: I heard that golden hxdef could be avoid from icesword,rkdetector

and any other anti-rootkit software ,anybody knew something about the golden hxdef ?

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: