malware source code
search
⌘Ctrlk
malware source code
  • message-smileIntroduction
  • Code base
    • file-circle-exclamationHeaders
    • pageCRT Recreation
  • pageString Hashing
  • pageAntidebugging Methods
  • pageLibrary Loading
    • GetTeb
    • GetPeb
    • GetKUserSharedData
    • RtlLoadPeHeaders
    • LdrLoadGetProcedureAddress
    • GetRtlUserProcessParameters
    • ProxyRegisterWaitLoadLibrary
    • ProxyWorkItemLoadLibrary
    • Function Import Methods
      • GetProcAddress (Safe)
      • GetProcAddressDjb2
      • GetProcAddressFowlerNollVoVariant1a
      • GetProcAddressJenkinsOneAtATime32Bit
      • GetProcAddressLoseLose
      • GetProcAddressMurmur
      • GetProcAddressRotr32
      • GetProcAddressSdbm
      • GetProcAddressSipHash
      • GetProcAddressSuperFastHash
      • GetProcAddressUnknownGenericHash1
  • pageError Handling
  • pageFingerprinting
  • pageWrappers and Helpers
  • pageProcess Creation Techniques
  • pageShellcode Execution
  • pageCompression
  • pageNetworking
  • pageLsass Related
  • pageProxied Functions
  • pageEvasion
  • pageComponent Object Model
  • My Projects
    • Proof-of-Concepts
    • Write-ups
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. pageLibrary Loading

Function Import Methods

GetProcAddress (Safe)chevron-rightGetProcAddressDjb2chevron-rightGetProcAddressFowlerNollVoVariant1achevron-rightGetProcAddressJenkinsOneAtATime32Bitchevron-rightGetProcAddressLoseLosechevron-rightGetProcAddressMurmurchevron-rightGetProcAddressRotr32chevron-rightGetProcAddressSdbmchevron-rightGetProcAddressSipHashchevron-rightGetProcAddressSuperFastHashchevron-rightGetProcAddressUnknownGenericHash1chevron-right
PreviousProxyWorkItemLoadLibrarychevron-leftNextGetProcAddress (Safe)chevron-right