如何提升进程的权限

我们可以通过WriteProcessMemory函数直接修改其他进程的内存从而实现内存补丁或者游戏修改之类的功能,但是,有个问题,并不是所有的程序都是能够被写内存的,这从前面的日志 通过CreateToolhelp32Snapshot函数获得系统中当前运行的进程信息2 可以看出来,好多程序的打开状态是失败的。所以,提升当前进程的权限非常非常必要。程序实现的代码如下:
ContractedBlock.gif ExpandedBlockStart.gif Code
#include <windows.h>
#include 
<tlhelp32.h>
BOOL CALLBACK EnumChildWindowProc(HWND hWnd,LPARAM lParam);
//枚举记事本中的子窗口
char mess[999999];
int WINAPI WinMain(HINSTANCE hInstance,HINSTANCE hPrevInstance,LPSTR lpCmdLine,int nShowCmd)
{
    HWND nphWnd
=::FindWindow("notepad",NULL);
    
if(nphWnd)
    {
        
char temp[1024];
        PROCESSENTRY32 pe32;
        pe32.dwSize
=sizeof(pe32);
        HANDLE hProcessSnap
=::CreateToolhelp32Snapshot(TH32CS_SNAPPROCESS,0);//获得进程列表的快照,第一个参数可以有其他选项,详细请参考MSDN
        if(hProcessSnap==INVALID_HANDLE_VALUE)
        {
            ::MessageBox(NULL,
"CreateToolhelp32Snapshot error","error",MB_OK);
            
return 0;
        }
        HANDLE hProcess;
        HANDLE hToken;
        BOOL bMore;
        TOKEN_PRIVILEGES tkp;
        
//获得本进程的句柄,并提升其权限
        bMore=::Process32First(hProcessSnap,&pe32);
        
while(bMore)
        {
            ::wsprintf(temp,
"%s",pe32.szExeFile);
            
if(!::strcmp(temp,"upprocess.exe"))//找到本进程
            {
                
//提升权限
                
//获得debug权限的LUID
                if(!::LookupPrivilegeValue(NULL,"SeDebugPrivilege",&tkp.Privileges[0].Luid))
                {
                    ::MessageBox(NULL,
"LookupPrivilegeValue error","error",MB_OK);
                    
return 0;
                }
                tkp.PrivilegeCount
=1;
                tkp.Privileges[
0].Attributes=SE_PRIVILEGE_ENABLED;
                
//打开进程的令牌环
                if(!::OpenProcessToken(::GetCurrentProcess(),TOKEN_ADJUST_PRIVILEGES|TOKEN_QUERY,&hToken))
                {
                    ::MessageBox(NULL,
"OpenProcessToken error","error",MB_OK);
                    
return 0;
                }
                
//修改进程权限
                if(!::AdjustTokenPrivileges(hToken,FALSE,&tkp,0,(PTOKEN_PRIVILEGES)NULL, 0))
                {
                    ::MessageBox(NULL,
"AdjustTokenPrivileges error","error",MB_OK);
                    
return 0;
                }
                
break;
            }
            bMore
=::Process32Next(hProcessSnap,&pe32);
        }
        
//获得本进程的句柄,并提升其权限
        bMore=::Process32First(hProcessSnap,&pe32);//获得第一个进程的信息
        while(bMore)
        {
            ::wsprintf(temp,
"%s%s%s%d%s","\r\n进程名: ",pe32.szExeFile," 进程ID: ",pe32.th32ProcessID,"\r\n");
            ::strcat(mess,temp);

            hProcess
=::OpenProcess(PROCESS_ALL_ACCESS,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_ALL_ACCESS权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            HANDLE hProcess
=::OpenProcess(PROCESS_CREATE_PROCESS,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_CREATE_PROCESS权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_CREATE_THREAD,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_CREATE_THREAD权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_DUP_HANDLE,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_DUP_HANDLE权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_QUERY_INFORMATION,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_QUERY_INFORMATION权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_SET_INFORMATION,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_SET_INFORMATION权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_TERMINATE,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_TERMINATE权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_VM_OPERATION,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_VM_OPERATION权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_VM_READ,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_VM_READ权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }

            hProcess
=::OpenProcess(PROCESS_VM_WRITE,false,(DWORD)pe32.th32ProcessID);//根据进程ID获得进程句柄
            ::wsprintf(temp,"%s","PROCESS_VM_WRITE权限: ");
            ::strcat(mess,temp);
            
if(hProcess==NULL)
            {
                ::wsprintf(temp,
"%s","失败\r\n");
                ::strcat(mess,temp);
            }
            
else
            {
                ::wsprintf(temp,
"%s","成功\r\n");
                ::strcat(mess,temp);
                ::CloseHandle(hProcess);
            }
            bMore
=::Process32Next(hProcessSnap,&pe32);//获得其他进程信息
        }
        ::EnumChildWindows(nphWnd,EnumChildWindowProc,
0);//获得记事本的edit窗口,打印进程信息
        return 0;
    }
    
else
    {
        ::MessageBox(NULL,
"please open notepad","error",MB_OK);
        
return 0;
    }
}
BOOL CALLBACK EnumChildWindowProc(HWND hWnd,LPARAM lParam)
{
    
char temp1[256];
    
if(hWnd)
    {
        ::GetClassName(hWnd,temp1,
255);
        
if(!::strcmp(temp1,"Edit"))//得到edit子窗口句柄
        {
            ::SendMessage(hWnd,WM_SETTEXT,
0,(LPARAM)mess);
            
return 0;
        }
    }
    
return true;
}

这段代码就是在 通过CreateToolhelp32Snapshot函数获得系统中当前运行的进程信息2 基础上做了修改,在检测当前进程的权限之前加上了提升当前进程权限的过程,权限提升之前进程权限如下所示:

ContractedBlock.gif ExpandedBlockStart.gif Code

进程名: [System Process] 进程ID: 
0
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: System 进程ID: 
4
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: smss.exe 进程ID: 
852
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: csrss.exe 进程ID: 
912
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: winlogon.exe 进程ID: 
904
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: services.exe 进程ID: 
980
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: lsass.exe 进程ID: 
992
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: ati2evxx.exe 进程ID: 
1172
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: svchost.exe 进程ID: 
1188
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: svchost.exe 进程ID: 
1256
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: svchost.exe 进程ID: 
1920
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: svchost.exe 进程ID: 
584
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: svchost.exe 进程ID: 
756
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: ati2evxx.exe 进程ID: 
876
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: ccSetMgr.exe 进程ID: 
1452
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: ccEvtMgr.exe 进程ID: 
580
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: spoolsv.exe 进程ID: 
1332
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: scardsvr.exe 进程ID: 
1376
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: explorer.exe 进程ID: 
512
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: smax4pnp.exe 进程ID: 
1656
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: QLBCtrl.exe 进程ID: 
1664
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: SynTPEnh.exe 进程ID: 
1696
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: HPWAMain.exe 进程ID: 
1720
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: accrdsub.exe 进程ID: 
740
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ccApp.exe 进程ID: 
1800
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: VPTray.exe 进程ID: 
1828
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: GooglePinyinDaemon.exe 进程ID: 
1992
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
224
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: acevents.exe 进程ID: 
228
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: peer.exe 进程ID: 
536
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: accoca.exe 进程ID: 
1752
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: agrsmsvc.exe 进程ID: 
1792
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: DefWatch.exe 进程ID: 
1816
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: ctfmon.exe 进程ID: 
1856
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPLiveVA.exe 进程ID: 
1876
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
1976
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: Rtvscan.exe 进程ID: 
2204
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: PPSAP.exe 进程ID: 
2268
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPAP.exe 进程ID: 
2656
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: vmware
-authd.exe 进程ID: 2872
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: CNAB4RPK.EXE 进程ID: 
3280
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: vmount2.exe 进程ID: 
3936
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: vmnat.exe 进程ID: 
3972
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: vmnetdhcp.exe 进程ID: 
320
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: hpqWmiEx.exe 进程ID: 
2516
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: wmiprvse.exe 进程ID: 
2884
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: alg.exe 进程ID: 
1536
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: Com4QLBEx.exe 进程ID: 
4024
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 失败

进程名: HpqToaster.exe 进程ID: 
3484
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: taskmgr.exe 进程ID: 
2936
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: QQ.exe 进程ID: 
3900
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: TXPlatform.exe 进程ID: 
1576
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: FetionFx.exe 进程ID: 
1760
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: conime.exe 进程ID: 
2436
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPLive.exe 进程ID: 
4896
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: QQMusic.exe 进程ID: 
2308
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: Maxthon.exe 进程ID: 
4888
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: NOTEPAD.EXE 进程ID: 
312
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: MSDEV.EXE 进程ID: 
4464
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: War3.exe 进程ID: 
5628
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: upprocess.exe 进程ID: 
4536
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

魔兽争霸3的进程竟然什么权限都没有,郁闷啊,在提升了当前进程的权限以后,结果如下:

ContractedBlock.gif ExpandedBlockStart.gif Code

进程名: [System Process] 进程ID: 
0
PROCESS_ALL_ACCESS权限: 失败
PROCESS_CREATE_PROCESS权限: 失败
PROCESS_CREATE_THREAD权限: 失败
PROCESS_DUP_HANDLE权限: 失败
PROCESS_QUERY_INFORMATION权限: 失败
PROCESS_SET_INFORMATION权限: 失败
PROCESS_TERMINATE权限: 失败
PROCESS_VM_OPERATION权限: 失败
PROCESS_VM_READ权限: 失败
PROCESS_VM_WRITE权限: 失败

进程名: System 进程ID: 
4
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: smss.exe 进程ID: 
852
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: csrss.exe 进程ID: 
912
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: winlogon.exe 进程ID: 
904
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: services.exe 进程ID: 
980
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: lsass.exe 进程ID: 
992
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ati2evxx.exe 进程ID: 
1172
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
1188
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
1256
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
1920
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
584
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
756
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ati2evxx.exe 进程ID: 
876
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ccSetMgr.exe 进程ID: 
1452
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ccEvtMgr.exe 进程ID: 
580
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: spoolsv.exe 进程ID: 
1332
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: scardsvr.exe 进程ID: 
1376
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: explorer.exe 进程ID: 
512
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: smax4pnp.exe 进程ID: 
1656
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: QLBCtrl.exe 进程ID: 
1664
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: SynTPEnh.exe 进程ID: 
1696
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: HPWAMain.exe 进程ID: 
1720
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: accrdsub.exe 进程ID: 
740
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ccApp.exe 进程ID: 
1800
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: VPTray.exe 进程ID: 
1828
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: GooglePinyinDaemon.exe 进程ID: 
1992
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
224
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: acevents.exe 进程ID: 
228
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: peer.exe 进程ID: 
536
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: accoca.exe 进程ID: 
1752
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: agrsmsvc.exe 进程ID: 
1792
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: DefWatch.exe 进程ID: 
1816
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: ctfmon.exe 进程ID: 
1856
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPLiveVA.exe 进程ID: 
1876
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: svchost.exe 进程ID: 
1976
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: Rtvscan.exe 进程ID: 
2204
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPSAP.exe 进程ID: 
2268
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPAP.exe 进程ID: 
2656
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: vmware
-authd.exe 进程ID: 2872
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: CNAB4RPK.EXE 进程ID: 
3280
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: vmount2.exe 进程ID: 
3936
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: vmnat.exe 进程ID: 
3972
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: vmnetdhcp.exe 进程ID: 
320
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: hpqWmiEx.exe 进程ID: 
2516
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: wmiprvse.exe 进程ID: 
2884
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: alg.exe 进程ID: 
1536
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: Com4QLBEx.exe 进程ID: 
4024
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: HpqToaster.exe 进程ID: 
3484
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: taskmgr.exe 进程ID: 
2936
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: QQ.exe 进程ID: 
3900
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: TXPlatform.exe 进程ID: 
1576
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: FetionFx.exe 进程ID: 
1760
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: conime.exe 进程ID: 
2436
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: PPLive.exe 进程ID: 
4896
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: QQMusic.exe 进程ID: 
2308
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: Maxthon.exe 进程ID: 
4888
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: NOTEPAD.EXE 进程ID: 
312
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: MSDEV.EXE 进程ID: 
4464
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: War3.exe 进程ID: 
5628
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

进程名: upprocess.exe 进程ID: 
456
PROCESS_ALL_ACCESS权限: 成功
PROCESS_CREATE_PROCESS权限: 成功
PROCESS_CREATE_THREAD权限: 成功
PROCESS_DUP_HANDLE权限: 成功
PROCESS_QUERY_INFORMATION权限: 成功
PROCESS_SET_INFORMATION权限: 成功
PROCESS_TERMINATE权限: 成功
PROCESS_VM_OPERATION权限: 成功
PROCESS_VM_READ权限: 成功
PROCESS_VM_WRITE权限: 成功

全部都成功了,哈哈!如果没有钩子或者保护程序存在的话,下面就可以直接修改魔兽争霸了,哈哈哈!!

 

转载于:https://www.cnblogs.com/feiyucq/archive/2009/10/22/1588122.html

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值