5 Commits
Author SHA1 Message Date
Ron Epstein a96149a0f4 Add article link to README 2026-06-29 21:19:49 +03:00
Ron Epstein a192adc5eb Add build instructions
GCC compile commands for both the injector and the payload DLL.
2026-06-22 18:08:50 +03:00
Ron Epstein 7d1f6c6edc Add injector
Implements classic DLL injection via CreateRemoteThread. Opens the target process, allocates remote memory for the DLL path, writes it, then spawns a remote thread pointing to LoadLibraryA.
2026-06-22 18:08:41 +03:00
Ron Epstein 5914df4bd2 Add payload DLL
Executes a MessageBox on DLL_PROCESS_ATTACH to confirm code execution inside the target process.
2026-06-22 18:08:31 +03:00
Ron Epstein e004ac7cef Initial commit
README with technique overview, usage instructions, and detection notes. Covers the 4-step injection flow, Process Hacker observations, and common EDR detection points.
2026-06-22 18:08:23 +03:00