exp for CVE-2019-0887
CVE-2019-0887 Compile the CVE-2019-0887, rename to winhlpdll Compile the Install_Hook, rename to hookexe be careful, they must be compile with x64 Put then into the evil system just like that c:\windows\hookexe c:\windows\winhlpdll c:\windows\winhlp64exe # something evil if somebody want to change the path, there is the point # CV