ufrisk / LeechCore

LeechCore - Physical Memory Acquisition Library & The LeechAgent Remote Memory Acquisition Agent
GNU General Public License v3.0
488 stars 92 forks source link

hi #37

Closed alukaduo09 closed 8 months ago

alukaduo09 commented 8 months ago

Hello. I have a problem now. How do I get permission to run processes that are currently running?

ufrisk commented 8 months ago

I don't understand this question. If you have questions to ask you may join the Discord server and ask questions there also.

alukaduo09 commented 8 months ago

I don't understand this question. If you have questions to ask you may join the Discord server and ask questions there also.

For example: administrator, system , Guest I only need to obtain this information about the process.

ufrisk commented 8 months ago

This is available in the token sub-directory: https://github.com/ufrisk/MemProcFS/wiki/FS_Process_Token

alukaduo09 commented 8 months ago

这在令牌子目录中可用:https://github.com/ufrisk/MemProcFS/wiki/FS_Process_Token

Thank you so much, that's what I need