This is a malware that i used in it remote thread hijacking
عن هذا المشروع
Remote Thread Hijacking This project demonstrates remote thread hijacking on a Windows process. It involves creating a suspended process, injecting shellcode into that process, and hijacking its thread to execute the injected shellcode. Features Create Suspended Process: Launches a Windows process in a suspended state to allow for thread hijacking. Shellcode Injection: Allocates memory in the target process, injects shellcode, and changes memory protection for execution. Thread Hijacking: Modifies the context of the target thread to point to the injected shellcode and resumes the thread. Prerequisites Operating System: Windows Development Environment: Visual Studio Libraries: Windows API (kernel32, ntdll) Functions for process and memory management How It Works Create Suspended Process: The project uses the CreateProcess API to start a process in suspended mode. Inject Shellcode: The shellcode is injected into the process using VirtualAllocEx and WriteProcessMemory. Hijack Thread: The thread's instruction pointer (RIP) is redirected to the shellcode and resumed. Usage Clone the repository: Open the project in Visual Studio.
من ملف README الخاص بالمشروع على
GitHub
- النجوم
- 12
- التفريعات
- 0
- الرخصة
- MIT
- آخر تحديث
- 21/09/2024
أضف هذه الشارة إلى ملف README
أظهر أن مشروعك مُدرج على «صُنع في الجزائر».
[](https://www.madeinalgeria.dev/projects/remotethreadhijacking)