![]() |
#1
|
|||
|
|||
Hiding a process
Is there a reliable way to hide a process in x64 without having to reboot, or to switch off Patch Guard?
|
#2
|
|||
|
|||
http://forum.exetools.com/showthread.php?t=12838
|
#3
|
|||
|
|||
Problem
This article requires disabling PG first.
|
#4
|
|||
|
|||
Seems like easyhook works with 64bit! That may help.
https://easyhook.codeplex.com/ |
#5
|
||||
|
||||
Quote:
I would suggest moving away from kernel mode all together, and focus on usermode to accomplish what you need done.
__________________
Best Wishes, Fyyre -- https://github.com/Fyyre |
#6
|
||||
|
||||
Well, just remove process from ActiveProcessLink, of course, if you have signed driver.
__________________
http://accessroot.com |
The Following User Gave Reputation+1 to deroko For This Useful Post: | ||
![]() |
Tags |
process hiding, x64 |
Thread Tools | |
Display Modes | |
|
|
![]() |
||||
Thread | Thread Starter | Forum | Replies | Last Post |
Process hiding with SSDT modification in x64 Win7 | 31337guru | x64 OS | 3 | 05-03-2012 18:16 |
ASPR 2.xx OEP hiding bug | KaGra | General Discussion | 1 | 08-27-2005 19:52 |
hiding stuff | SLIM SLIM | General Discussion | 4 | 01-26-2003 21:04 |