
NtQueryInformationProcess
This function retrieves information about a specified process. Malware are able to detect if the process is currently being debugged with the information retrieves by the function.
This function retrieves information about a specified process. Malware are able to detect if the process is currently being debugged with the information retrieves by the function.