Description: Killer.sys DriverMonitor KillerIoCTL.exe is loaded, the communication program. The input end of the process of ProcessID.
Termination of Kaba, 360, Duba, ice, PowerTool, PcHunter.
I can t stop Jiangmin, in PsLookupProcessByProcessId (EProcess) that reads the process failed, presumably Jiangmin here hanging hook.
The next step is to search the PsLookupProcessByProcessId recovery hooks to try.
To Search:
File list (Check if you may need any files):
源码\IOCTL\KillerIoCTL.cpp
....\sys\DataStruct.h
....\...\KillProcess.c
....\...\KillProcess.h
....\...\makefile
....\...\sources
....\IOCTL
....\sys
源码
程序\Killer.sys
....\KillerIoCTL.exe
....\Readme.txt
程序