Skip to content

A simple BOF that disables some logging with NtSetInformationProcess

Notifications You must be signed in to change notification settings

zimnyaa/stoplooking

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1 Commit
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

stoplooking BOF

a simple bof to implement https://www.riskinsight-wavestone.com/en/2023/10/a-universal-edr-bypass-built-in-windows-10/

usage:
stoplooking <pid>
stoplooking 0 to select current process

About

A simple BOF that disables some logging with NtSetInformationProcess

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published