GetModuleHandle implementation in C# using only NtQueryInformationProcess by walking the PEB
-
Updated
Feb 9, 2024 - C#
GetModuleHandle implementation in C# using only NtQueryInformationProcess by walking the PEB
GetProcAddress implementation in C# walking the PEB using only NtReadVirtualMemory
Read, write and delete Extended Attributes (EAs) within NTFS, to hide malicious payloads
Read, write and delete Alternate Data Streams (ADS) within NTFS, to hide malicious payloads
Add a description, image, and links to the sektor7 topic page so that developers can more easily learn about it.
To associate your repository with the sektor7 topic, visit your repo's landing page and select "manage topics."