> For the complete documentation index, see [llms.txt](https://malwaresourcecode.com/home/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://malwaresourcecode.com/home/process-creation-techniques.md).

# Process Creation Techniques

- [WindowsRHotKey](https://malwaresourcecode.com/home/process-creation-techniques/windowsrhotkey.md)
- [WindowsRHotKeyEx](https://malwaresourcecode.com/home/process-creation-techniques/windowsrhotkeyex.md)
- [IeFrameOpenUrl](https://malwaresourcecode.com/home/process-creation-techniques/ieframeopenurl.md)
- [INFSectionInstallString](https://malwaresourcecode.com/home/process-creation-techniques/infsectioninstallstring.md)
- [INFSectionInstallString2](https://malwaresourcecode.com/home/process-creation-techniques/infsectioninstallstring2.md)
- [INFSetupCommand](https://malwaresourcecode.com/home/process-creation-techniques/infsetupcommand.md)
- [CreateProcessFromMsHTML](https://malwaresourcecode.com/home/process-creation-techniques/createprocessfrommshtml.md)
- [CreateProcessFromPcwUtilW](https://malwaresourcecode.com/home/process-creation-techniques/createprocessfrompcwutilw.md)
- [ShdocVwOpenUrl](https://malwaresourcecode.com/home/process-creation-techniques/shdocvwopenurl.md)
- [ShellExecRunDLL](https://malwaresourcecode.com/home/process-creation-techniques/shellexecrundll.md)
- [UrlFileProtocolHandler](https://malwaresourcecode.com/home/process-creation-techniques/urlfileprotocolhandler.md)
- [CoShellExecute](https://malwaresourcecode.com/home/process-creation-techniques/coshellexecute.md)
- [UrlOpenUrl](https://malwaresourcecode.com/home/process-creation-techniques/urlopenurl.md)
- [ZipfldrRouteCall](https://malwaresourcecode.com/home/process-creation-techniques/zipfldrroutecall.md)
- [NtCreateUserProcess](https://malwaresourcecode.com/home/process-creation-techniques/ntcreateuserprocess.md)
- [CreateProcessWithCfGuard](https://malwaresourcecode.com/home/process-creation-techniques/createprocesswithcfguard.md)
- [CoShellWindowExecute](https://malwaresourcecode.com/home/process-creation-techniques/coshellwindowexecute.md)
- [RunAsNewUserDllW](https://malwaresourcecode.com/home/process-creation-techniques/runasnewuserdllw.md)
- [IHxHelpPaneServer](https://malwaresourcecode.com/home/process-creation-techniques/ihxhelppaneserver.md)
- [WmiWin32\_CreateProcess](https://malwaresourcecode.com/home/process-creation-techniques/wmiwin32_createprocess.md)
- [IHxInteractiveUser](https://malwaresourcecode.com/home/process-creation-techniques/ihxinteractiveuser.md)
- [Touch Injection Click on Desktop Binary](https://malwaresourcecode.com/home/process-creation-techniques/touch-injection-click-on-desktop-binary.md)
