-
Notifications
You must be signed in to change notification settings - Fork 10
Open
Description
@malwarekid Do you have any insight on what you can and cannot use this on?
Ive been playing around with it, trying to get things to run inside explorer.exe. But with no success.
I am able to do things with some exes that dont have additional files like calc.exe but still limited.
Like I am able to inject procexp64.exe from sysinternals into calc.exe, but not the other way around.
The normal error I get is "The ordinal 380 could not be located in the DLL."
End goal was to run GHOSTS-CMU user emulation from inside Explorer.exe to make it more difficult to identify the ghosts automation.
If youve got any thoughts Id love to here them! Thanks in advance.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels