MaorSabag / TrueSightKiller

CPP AV/EDR Killer
361 stars 61 forks source link

OpenSCManager failed #1

Open black-arch7 opened 1 year ago

black-arch7 commented 1 year ago

Got error -

C:\Users\terminator\Desktop\TrueSightKiller-main\TrueSightKiller-main\x64\Debug>seprate.exe -n MsMpEng.exe Welcome to EDR/AV Killer using truesight driver! This is a PoC, use it at your own risk! [-] OpenSCManager failed

Windows 10, Defender activated and seprate.exe is renamed version

MaorSabag commented 11 months ago

Are you in elevated shell? In order to start a service you need to be in elevated shell.

ttsite commented 11 months ago

Execution under system permissions also failed, as shown above!