|
|
via
Usage: fu
        [-pl]  #number   to list the first #number of processes
        [-ph]  #PID      to hide the process with #PID
        [-pld]           to list the named drivers in DbgView
        [-phd] DRIVER_NAME to hide the named driver
        [-pas] #PID      to set the AUTH_ID to SYSTEM on process #PID
        [-prl]           to list the available privileges
        [-prs] #PID #privilege_name to set privileges on process #PID
        [-pss] #PID #account_name to add #account_name SID to process #PID token
例如隐藏 pid 为 2009 的进程: fu.exe -ph 2009
官方网站: https://www.rootkit.com/board_project_fused.php?did=proj12
注:不要删除 fu.exe 目录内的其他文件,否则会无法隐藏进程或导致电脑重启!
(发现也不太稳定,我把 Opera.exe 进程隐藏后,当退出 Opera.exe 时电脑重启...)
http://bcn.bathome.net/s/tool/index.html?key=fu |
评分
-
查看全部评分
|