|
|
|
Clear questions and runnable code get the best and fastest answer |
|
| PerlMonks |
Re: NtQuerySystemInformation/Task Manger processes tab with Win32::API (win32 cwd/pwd from pid)by Anonymous Monk |
| on Dec 15, 2012 at 07:25 UTC ( #1008941=note: print w/ replies, xml ) | Need Help?? |
|
Can you retrieve cwd/pwd from pid? Maybe using GetCurrentDirectoryFromPid? There is Win32::EnvProcess but it doesn't quite work for me, and I'm only interested in read only access volatility looks interesting, but i'd consider GUITest-ing procexp before resorting to python :) The author of Win32::Process::Info decided to not use Native API Win32::Process::Info::NT leaving only WMI as the alternative according to what I've been told. Well, Win32::Process::Info::NT "works" but the amount of info is less
In Section
Cool Uses for Perl
|
|
||||||||||||||||||||||