I can't find dmex's authoritative post on this, but what you're describing is as expected because dodgy programs were using PH's driver to kill programs that would kill them (I've personally seen a trial reset batch file for an anti-virus program that used PH to kill the AV's processes to prevent it...
How did you find those struct? used a PDB viewer? Note: I'm not experienced in the slightest in all this. I only bothered because I prefer just using Process Hacker if I can get away with it... I'm also pretty bad at writing, so I apologise if this is nonsensical. Here's the short-er version, becau...
You can hover the cursor on the memory graph in Task Manager to see the additional compression values... Do they match the values returned by this class? OK, back earlier than I thought... Again, thank you for spending time on this. (And sorry for my shortness earlier, if you need me to resend the ...
What theme is that? Check your emails, I replied a while back with full details. Do they match the values returned by this class? Thank you for spending the time deciphering the struct. I'm sorry, but I can't test anything until next week - I'm stuck in a place with a Windows 7 computer and the Int...
It would be nice if Process Hacker could show the memory compression info, like how Task Manager in the AU does: screenshot.png I'm pretty sure (and I hope I'm right given the time I spent :/, but I can't promise anything) the information is retrieved from SmQueryStoreInformation by way of NtQuerySy...
Hi, With Process Hacker 2.39.124 on Windows 10, the delayed start checkbox is always disabled, even for services where delayed start must be supported as it's already enabled: Untitled.png I guess it's to do with this : if I use a hex editor to change "Auto S tart" to "Auto s tart&quo...
If you set Process Hacker as the default task manager either from its settings or the installer and then find a Process Hacker 2 shortcut and set it to run as an administrator from the Compatibility tab, starting PH by either pressing Ctrl+Shift+Esc or from the taskbar will elevate Process Hacker au...
Hi, When using the Online Checks plugin to send a running process to VirusTotal for checking, it uploads the file regardless of whether the file has already been submitted before. If you use the official client (VirusTotal uploader) and tell it to submit a running process for checking, it will hash ...