![]() |
|
#1
|
|||
|
|||
|
Hiding a process
Is there a reliable way to hide a process in x64 without having to reboot, or to switch off Patch Guard?
|
|
#2
|
|||
|
|||
|
http://forum.exetools.com/showthread.php?t=12838
|
|
#3
|
|||
|
|||
|
Problem
This article requires disabling PG first.
|
|
#4
|
|||
|
|||
|
Seems like easyhook works with 64bit! That may help.
https://easyhook.codeplex.com/ |
|
#5
|
||||
|
||||
|
Quote:
I would suggest moving away from kernel mode all together, and focus on usermode to accomplish what you need done.
__________________
Pax in vultu, bellum in corde. -- https://github.com/Fyyre |
|
#6
|
||||
|
||||
|
Well, just remove process from ActiveProcessLink, of course, if you have signed driver.
__________________
http://accessroot.com |
| The Following User Gave Reputation+1 to deroko For This Useful Post: | ||
![]() |
| Tags |
| process hiding, x64 |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Process hiding with SSDT modification in x64 Win7 | 31337guru | x64 OS | 3 | 05-03-2012 18:16 |
| ASPR 2.xx OEP hiding bug | KaGra | General Discussion | 1 | 08-27-2005 19:52 |
| hiding stuff | SLIM SLIM | General Discussion | 4 | 01-26-2003 21:04 |