A forum for reverse engineering, OS internals and malware analysis 

Forum for discussion about kernel-mode development.
 #26793  by flauteABC
 Wed Sep 23, 2015 8:06 pm
I am looking to unlick / kill the image file of an executable. I already used IRP_MJ_SET_INFORMATION / FILE_DISPOSITION_INFORMATION but looking for different solutions.