well nice 1 neji, id call this a rootkit thought

(btw, i managed to find the process hidex itself after execution, not in any process with a name but i found it anyhow in processexp)
"not existing process" (wtf??) handle: \BaseNamedObjects\hideFile
and future more, it hides it (aparently) from all the processes currently running, it does not update, continue to hide from newly started processes
easy fix for that thought (bat):
Code:
@echo off
begin
hideX TheFileToHideHere
hideX TheSecoundFileToHideHere (or whatever)
goto begin
whould constantly update the hiding to new processes to
and... was running pEiD and... why the heck do it says that its 6 diffrent "encryption signatures" in the program? o.0 ADLER32/Base64 (x3)/BLOWFISH/CRC32/PI fraction/ZLIB (x3)/ ??? ??? just some wirdo false-result, or?