获得进程的EPROCESS(4) 0060 E2BEE608 E2BEE620 Key 0064 FFB07568 FFB07580 Event 0068 801747E8 80174800 Event 006C 80174828 80174840 Event 0070 845E8808 845E8820 Event 0074 81448798 814487B0 Event 0078 E2B9A888 E2B9A8A0 Key 007C 845E8648 845E8660 Event 0080 FF9E2DB8 FF9E2DD0 Mutant 0084 FF9E2D58 FF9E2D70 Mutant 0088 83CFC378 83CFC390 Mutant 008C 801749B0 801749C8 File 0090 E2C48668 E2C48680 Section 0094 FF965168 FF965180 Event 0098 FF9E7D88 FF9E7DA0 Event 009C FFAD3DE8 FFAD3E00 Event 00A0 80AD63C8 80AD63E0 Event 00A4 E28073A8 E28073C0 Key 00A8 FF955588 FF9555A0 Thread 00AC E2770728 E2770740 Key