
CreateProcessW
Read documentation
Through official Microsoft Developer Network (MSDN).
Featured in Techniques
Technique Name | Technique ID's | Has Snippet(s) | Has Rules(s) |
---|---|---|---|
APC injection | U1221 E1055.004 | ||
File Melt | U1007 | ||
ProcEnvInjection - Remote code injection by abusing process environment strings | U1235 | ||
NLS Code Injection Through Registry | U1237 | ||
Process Hollowing, RunPE | U1225 E1055.012 |