mirror of
https://github.com/ciyze0101/Windows-Rootkits
synced 2024-07-20 10:05:21 +00:00
.. | ||
ProcessManager | ||
ProcessManagerRing0 | ||
ProcessManager.sln | ||
ProcessManager.suo | ||
ReadMe.txt |
1.Enum Process By PsLookupProcessByProcessId/travel Active List/PspCidTable 2.Hdie Process By Process Active List/PspCidTable 3.Monitor Process CreateInformation By PsSetCreateProcessNotifyRoutineEx