Windows-Rootkits/ProcessManager
2018-01-21 11:52:40 +08:00
..
ProcessManager Update Monitor.cpp 2018-01-21 11:25:57 +08:00
ProcessManagerDrv Update ProcessManagerDrv.h 2018-01-21 11:52:40 +08:00
ProcessManager.sln Add files via upload 2018-01-21 01:23:40 +08:00
ProcessManager.suo Add files via upload 2018-01-21 01:23:40 +08:00
ReadMe Create ReadMe 2018-01-21 01:21:26 +08:00

1.Enum Process By PsLookupProcessByProcessId/travel Active List/PspCidTable
2.Hdie Process By Process Active List/PspCidTable
3.Monitor Process CreateInformation By PsSetCreateProcessNotifyRoutineEx