首页
社区
课程
招聘
Shadow Walker
发表于: 2006-7-13 12:31 4111

Shadow Walker

2006-7-13 12:31
4111
FU
short description:

The FU rootkit can hide processes, elevate process privileges, fake out the Windows Event Viewer so that forensics is impossible, and even hide device drivers (NEW!) All this without any hooking.

long description:

The FU rootkit can hide processes, elevate process privileges, fake out the Windows Event Viewer so that forensics is impossible, and even hide device drivers (NEW!). (Look, Mom, no hands!) It does all this by Direct Kernel Object Manipulation (TM); no hooking! This project has been evolving other time. It was originally conceived as a proof-of-concept. FU is a play on words from the UNIX program "su" used to elevate privilege.

project leader:

fuzen_op

homepage:

changelog:

https://www.rootkit.com/vault/fuzen_op/FU_README.txt

download:

https://www.rootkit.com/vault/fuzen_op/FU_Rootkit.zip

font:
http://www.rootkit.com/project.php?id=12

Bye

Kernel Rocket

[注意]传递专业知识、拓宽行业人脉——看雪讲师团队等你加入!

收藏
免费 0
支持
分享
最新回复 (2)
雪    币: 196
活跃值: (135)
能力值: ( LV10,RANK:170 )
在线值:
发帖
回帖
粉丝
2
Downloading.....
THX

2006-7-13 16:19
0
雪    币: 202
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
3
看不懂了!!!
2010-1-4 12:07
0
游客
登录 | 注册 方可回帖
返回
//