ohmygodwife / ProcessGhosting

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

ProcessGhosting

本项目是来自hasherezade,并在hasherezade基础上对关键函数进行systemcall,对内存操作api进行unhook。

使用方法:
processghost.exe blackexePath

具体的技术详解请查看:https://mp.weixin.qq.com/s/HE0Re6RZ0wojTwPnHjeF3Q

About


Languages

Language:C 73.3%Language:Assembly 14.7%Language:C++ 12.0%