You currently have javascript disabled. Several functions may not work. Please re-enable javascript to access full functionality.
- Please log in to reply
#1
Posted 31 January 2021 - 12:15 AM
Hello everybody,
I started a few days ago with the intention of creating a PE Infector, but wherever I tried to search I always found pieces of code in asm, particularly the payload would be in asm.
I succesfully managed to map the PE32 Image files structures, but there's one thing I cannot comprehend: since the basic principle of PE infection would be to execute custom code and then jump back to the original Entry Point to fake a regular .exe execution, is it possible to achieve so without injecting asm shellcode but by using only C code?
As I said, I managed to reach the part of the PE32 file which contains all section headers but I fail to understand how to edit existing fields and add a custom payload to the right place in pure C, the payload being another .exe file for example.
Any help would be appreciated, thanks.
- RidgeFen, Robertincaf, Miguboactamb and 2 others like this
#2
Posted 24 August 2024 - 06:56 PM
- Gender:Male
- Location:TsuChikasNargayTuTuesmuySuda
-
Interests:lllarc-> lol+=
AloneWithoutYou();
icrosoft, acebook,oneynet;
--;--;--; -
Coding:not enclish.
los virus de metamórficas son más elegantes por naturaleza
"si el amor es una ilusión, que la realidad cogida"
~Pseudoephedrine deco~
{[€®\®¢®\®€TM\®\TM¢TM\®\TM€TM\®®\®€®€®\TM\®®€TM€®\®\®€TM€TM\®\®\®€®\®^®\®€®TM\®\®\®\®®¢TM¢TM¢TM¢TM€\TMTM€TM¢TM¢TM€TM\®\®•®•®€®©¢¢©©¢©•©•©|©¢©|©•®•®•©•©•|||§∆]}; [&]("\\\\\\\"){};
Also tagged with one or more of these keywords: programming, PE, infect, offset, headers
PE loader crashes sometimes. Why?
Started by betrayer, 02 Jan 2019 C++, Winapi, PE
- 0 replies
- 20447 Views
Old member back in town
Started by timb3r, 29 Oct 2018 programming, rce, game, modding and 1 more...
- 5 replies
- 26070 Views
Motion trails effect with windows.
Started by Headrush, 08 Feb 2018 programming, winapi, c/c++, gui and 2 more...
- 0 replies
- 19265 Views
Where do I learn C#
Started by Tulip_Fag, 10 Aug 2017 c#, c sharp, programming
- 3 replies
- 28095 Views
PE File Load Failure Debug
Started by CPU_Whisperer, 17 Jul 2017 PE, WinDbg, Kernel, Windows
- 0 replies
- 20151 Views
3 user(s) are reading this topic
0 members, 3 guests, 0 anonymous users