Giter Site home page Giter Site logo

core-win32's Introduction

Hi there ๐Ÿ‘‹

core-win32's People

Contributors

wolfcod avatar

Watchers

 avatar

core-win32's Issues

IPC communication

IPC communication is designed around a shared memory used in a different context (hooks => agent, agent => asp, agent => social, social => agent).

Every channel is designed from scratch, with different logic.

demo version

Everything related to a build in DEMO version must be enabled when in "config" there is a "BUILD_DEMO_VERSION" flag enabled.

extensive use of cpu

in the core project, there are at least 16 threads running at the same time, and most of them are awakened at fixed intervals of time, check some external conditions, and go back to sleep.

  • MonitorUSBThread
  • MonitorVMThread
  • CapturePasswordThread
  • MonitorSkypePM
  • FastActionsThread
  • RepeatThread
  • FastActionsThread
  • SM_MonitorEvents
  • MonitorWindowsEvent
  • MonitorConnection
  • MonitorProcesses
  • QuotaMonitorThread
  • MonitorScreenSaver
  • TimerMonitorDates
  • MonitorUserIdles
  • MonitorNewWindowThread
  • MonitorFormatStatus

FNC(x)

A typical pattern is quite common in source code.

Any function you want to "obfuscate" from the external analysis is accessed via a FNC macro, which looks into a shared list with a valid pointer associated with the string.

This MACRO needs for each function a fixed name (as a result of obfuscation), a pointer to the original function, and a resolver.
It is not available in debug (so you are forced also in debug mode to run it step by step).

assembly stub

Assembly stubs must be removed and replaced with C code which can be compiled in a properly way in 32 and 64bit.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.