"Lock" process by taking its memories using a poc bug on Windows NT
https://gist.github.com/MolecularMatters/dbf39ea79fdf0ca00ca5083cba3a1da9 https://github.com/rbmm/Poc-from-Molecular https://dennisbabkin.com/blog/?i=AAA00800
- Clone
driver
branch and buildpoc.exe
by instructions - Put
poc.exe
in current directory - Start program with
.\main.py <target process name>
- Have fun!