snovvcrash

Results 8 comments of snovvcrash

What's the version of Nim compiler, winim package are you using? What's the target Windows OS version?

Unfortunately, I was not able to reproduce it. Is some AV/EDR software active when launching the injector?

I'm testing on Windows 10.0.19041, the rest of the stuff is the same.

Hey @mpgn, thanks for taking a look! Yep, I've also experienced this issue on some boxes - that's `tstool.py` related. Also there's a bug when attempting to run the modules...

Hey @0xdeaddood, thanks for the review! Agree with your comments, I've resolved the changes 👍🏻

@mpgn as a remark: the issue is relevant for servers where RDP is off. If RDP in on, everything's fine during my tests.

> question, which are the benefits of these rpc calls? what _rpc client refuses to work_ actually means ? Dunno if others have encountered such an issue with Samba's **rpcclient**...

```console docker run --rm -it -v `pwd`:/app/output --privileged snovvcrash/physmem2profit -h ``` :wink: