DreadRobertPirates
Light Weight
- Депозит
- $0
I'm not sure if I'm missing something, but just wrote a process hollowing script that hollows out notepad (or any other arbitrary program) and replaces it with the payload.
When I tested it with calc.exe as a test payload, it worked just fine, but when I changed to xmrig.exe, it doesn't start.
I was thinking it might be to do with xmrig needing dependancies, so does anyone know the best way to compile xmrig for it to work with process hollowing?
When I tested it with calc.exe as a test payload, it worked just fine, but when I changed to xmrig.exe, it doesn't start.
I was thinking it might be to do with xmrig needing dependancies, so does anyone know the best way to compile xmrig for it to work with process hollowing?