Skip to content

Latest commit

 

History

History
20 lines (12 loc) · 908 Bytes

File metadata and controls

20 lines (12 loc) · 908 Bytes

Shellcode Loader

Executing shellcode as a thread.

Overview

Eksekusi shellcode dengan RtlCreateUserThread dan tunggu hingga eksekusi tuntas dengan WaitForSingleObject.

RtlCreateUserThread adalah fungsi internal dan bersifat low-level.

NTSTATUS RtlCreateUserThread (HANDLE ProcessHandle, PSECURITY_DESCRIPTOR SecurityDescriptor, BOOLEAN CreateSuspended, ULONG StackZeroBits, PULONG StackReserved, PULONG StackCommit, PVOID StartAddress, PVOID StartParameter, PHANDLE ThreadHandle, PCLIENT_ID ClientID);

DWORD WaitForSingleObject (HANDLE hHandle, DWORD dwMilliseconds);

Reference