//
//
//
//
//
//
//
//
//
//
软件Tags:
易语言进程挂起源码系统结构:ZwSuspendProcess,ZwResumeProcess,OpenProcess,CloseHandle,GetCurrentProcessId, ======窗口程序集1 || ||------_按钮1_被单击 || ||------_按钮2_被单击 || || ======调用的Dll || ||---[dll]------ZwSuspendProcess || ||---[dll]------ZwResumeProcess || ||---[dll]------OpenProcess || ||---[dll]------CloseHandle ======窗口程序集1 || ||------_时钟1_周期事件 || ||------__启动窗口_创建完毕 || || ======调用的Dll || ||---[dll]------GetCurrentProcessId 调用的DLL命令: .DLL命令ZwSuspendProcess,,"NTDLL.DLL","ZwSuspendProcess",,暂停 .参数进程句柄 .DLL命令ZwResumeProcess,,"NTDLL.DLL","ZwResumeProcess",,恢复 .参数进程句柄 .DLL命令OpenProcess,整数型,,"OpenProcess",,打开进程获得进程句柄 .参数dwDesiredAccess,整数型 .参数bInheritHandle,整数型 .参数dwProcessId,整数型 .DLL命令CloseHandle,整数型,,"CloseHandle" .参数hObject,整数型 调用的DLL命令: .DLL命令GetCurrentProcessId,整数型,"kernel32.dll","GetCurrentProcessId",,取当前进程标识符_
