[Full-disclosure] how to hide files, services and process in windows 2k/xp/2k3 box

fatb fatb at security.zz.ha.cn
Sun Jul 10 13:08:13 BST 2005


hi all guys 

    I'm trying to write a rootkit to hide files,services and process

in windows 2k/xp/2k3 box ,and it would not be detected by icesword,rkdetector

and so on.

    Anybody could be kind enough to give me some tips or suggestions , thx alot!


BTW: I heard that golden hxdef could be avoid from icesword,rkdetector

and any other anti-rootkit software ,anybody knew something about the golden hxdef ?



Full-Disclosure is hosted and sponsored by Secunia.