Description: Rookit write complete finishing framework, including the hidden process, hidden files, hidden services, hidden registry port hidden. A variety of hidden learning rookit good information
To Search:
File list (Check if you may need any files):
ROOTKIT\InstDrv.exe
.......\RootkitR.exe
.......\rootkit\EAT_HOOK.c
.......\.......\EAT_HOOK.h
.......\.......\HideDevice.c
.......\.......\HideDevice.h
.......\.......\HideFile.c
.......\.......\HideFile.h
.......\.......\HideProcess.c
.......\.......\HideProcess.h
.......\.......\HideProcess1.c
.......\.......\HideProcess1.h
.......\.......\HideReg.c
.......\.......\HideReg.h
.......\.......\IAT_HOOK.c
.......\.......\IAT_HOOK.h
.......\.......\IDT_Hook.c
.......\.......\IDT_HOOK.h
.......\.......\Inline_HOOK.c
.......\.......\Inline_HOOK.h
.......\.......\KillProcess.c
.......\.......\KillProcess.h
.......\.......\libdasm.c
.......\.......\libdasm.h
.......\.......\Nt.h
.......\.......\NtWrap.c
.......\.......\NtWrap.h
.......\.......\Object_Hook.c
.......\.......\Object_Hook.h
.......\.......\pe.h
.......\.......\RestoreEAT_IAT.c
.......\.......\RestoreINLINE.c
.......\.......\RestoreSSDT.c
.......\.......\RestoreSSDT.h
.......\.......\rootkit.c
.......\.......\rootkit.dsp
.......\.......\rootkit.dsw
.......\.......\rootkit.h
.......\.......\rootkit.ncb
.......\.......\rootkit.plg
.......\.......\SSDT_HOOK.c
.......\.......\SSDT_HOOK.h
.......\.......\struct.h
.......\.......\tables.h
.......\.......\MyDriver_Check\Object_Hook.obj
.......\.......\rootkit.opt
.......\.......\MyDriver_Check
.......\rootkit
ROOTKIT