Introduction - If you have any usage issues, please Google them yourself
hidecon, utility rootkit for x64
requires patchguard disabled, if not disabled... use patch which you may find on my web site.
usage:
hidecon-l (display process list)
hidecon-le display hidden processes (dbgprint)
hidecon-ld (load ioport3 driver) 加载驱动
hidecon-ud (unload ioport3 driver) 卸载驱动
hidecon-ph (hide process- ProcessId) 隐藏进程
hidecon-pu (unhide process- ProcessId) 显示进程
hidecon-pht (remove handle table entry- ProcessId)
hidecon-phi (reinsert handle table entry- ProcessId)
all commands a valid ProcessId, except-ld and-ud
all information is stored in driver, hidecon.exe simply s commands and exits
let me know if any problems (twitter).
i added support for windows 8, and will enable this at sometime in the future :)