Windows-Rootkits/HideProcess
LycorisGuard 895c86c51a ReadMe
ReadMe
2018-08-14 01:25:51 +08:00
..
HideProcess.c 未测试 2018-08-14 01:20:43 +08:00
HideProcess.h 未测试 2018-08-14 01:20:43 +08:00
HideProcess.sln Add files via upload 2016-08-29 11:41:31 +08:00
HideProcess.vcxproj 未测试 2018-08-14 01:20:43 +08:00
ReadMe.txt ReadMe 2018-08-14 01:25:51 +08:00
common.h Add files via upload 2016-08-29 11:41:31 +08:00
readme.txt ReadMe 2018-08-14 01:25:51 +08:00
sources Add files via upload 2016-08-29 11:41:31 +08:00
struct.h Add files via upload 2016-08-29 11:41:31 +08:00

HideProcess by Remove ProcessList in EPROCESS struct.
Support Windows xp and windows 7 OS, you can add other os's offset of ProcessList in EPROCESS to support more.