MalwareSourceCode/Win32/Proof of Concepts/HideProcessUsingEPROCESS/ReadMe.txt
vxunderground 900263ea6f updates and moves
n/a
2022-04-11 20:00:13 -05:00

2 lines
164 B
Plaintext

HideProcess by Remove ProcessList in EPROCESS struct.
Support Windows xp and windows 7 OS, you can add other os's offset of ProcessList in EPROCESS to support more.