- 帖子
- 381
- 积分
- 1801
- 技术
- 9
- 捐助
- 0
- 注册时间
- 2008-10-27
|
via
Usage: fu
[-pl] #number to list the first #number of processes
[-ph] #PID to hide the process with #PID
[-pld] to list the named drivers in DbgView
[-phd] DRIVER_NAME to hide the named driver
[-pas] #PID to set the AUTH_ID to SYSTEM on process #PID
[-prl] to list the available privileges
[-prs] #PID #privilege_name to set privileges on process #PID
[-pss] #PID #account_name to add #account_name SID to process #PID token
例如隐藏 pid 为 2009 的进程: fu.exe -ph 2009
官方网站: https://www.rootkit.com/board_project_fused.php?did=proj12
注:不要删除 fu.exe 目录内的其他文件,否则会无法隐藏进程或导致电脑重启!
(发现也不太稳定,我把 Opera.exe 进程隐藏后,当退出 Opera.exe 时电脑重启...)
http://bcn.bathome.net/s/tool/index.html?key=fu |
-
1
评分人数
-
|