H Mike

Results 16 comments of H Mike

In fact, in PR 4, we'd be using raw models that wouldn't move, only the key/encryption method and the location where the shellcode is stored would change. In this case,...

It could be an option, yes but don't worry about this issue, I think the others have priority and require less effort.

mh i don't know, it seems very heavy and impractical for the user, but the tool works well. maybe it's possible to reimplement it in go?

Nop, It's a little different look: ![image](https://github.com/CMEPW/221b/assets/15458329/676074f6-bea2-42eb-a70e-bd0243a760d6)

An option should be added to allow the user to choose whether or not to encrypt functions, as this behavior can sometimes be reported as suspicious.

No, I was thinking more of several templates on our side, some where the shellcode will be in .text, others where it will be in .data or .rsrc Create a...