-
Notifications
You must be signed in to change notification settings - Fork 304
Open
Labels
enhancementNew feature or requestNew feature or request
Description
Some malware samples hide themselves from process lists by hooking the NtQuerySystemInformation function. I have not written this myself, but if any ideas are needed, this is one of them. I do not have my own code to contribute for this, so I will provide you with a link for reference.
Windows API Hooking - Hide Process from Task Manager tutorial
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or request