
Proof-of-concept for CVE-2025-60349, demonstrating arbitrary process termination via IOCTL 0x22E044 to the pxscan.sys driver, causing denial of service on Windows systems.
An issue was discovered in Prevx v3.0.5.220 allowing attackers to cause a denial of service via sending IOCTL code 0x22E044 to the pxscan.sys driver. Any processes listed under registry key HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pxscan\Files will be terminated.
Discovered by Dylan Reuter, August 2025.
References: