Navigation X
ALERT
Click here to register with a few steps and explore all our cool stuff we have to offer!



 420

GIT - TerraLdr ‘Payload loader”

by fightsdntmatter - 01 November, 2022 - 01:00 AM
This post is by a banned member (fightsdntmatter) - Unhide
71
Posts
9
Threads
2 Years of service
#1
TerraLdr - A Payload Loader Designed With Advanced
Evasion Features

like, comment, stick a finger in ur butt, etc..;
 
TerraLdr: A Payload Loader Designed With Advanced Evasion Features Details:
  • no crt functions imported
  • syscall unhooking using KnownDllUnhook
  • api hashing using Rotr32 hashing algo
  • payload encryption using rc4 - payload is saved in .rsrc
  • process injection - targetting 'SettingSyncHost.exe'
  • ppid spoofing & blockdlls policy using NtCreateUserProcess
  • stealthy remote process injection - chunking
  • using debugging & NtQueueApcThread for payload execution
Usage: Thanks For: Profit:[Image: 198824933-101d0641-d8b3-4cef-812d-0834cdb8cf0f.png][Image: 198824884-ba516101-0b02-4ff7-94fb-65ce692e02ce.jpg]

 

Hidden Content
You must register or login to view this content.

Tele: @G0G0Provides
This post is by a banned member (alhosane) - Unhide
alhosane  
Registered
28
Posts
0
Threads
5 Years of service
#2
will test
This post is by a banned member (YuuCMYK) - Unhide

Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
or
Sign in
Already have an account? Sign in here.


Forum Jump:


Users browsing this thread: 1 Guest(s)