Overblog Suivre ce blog
Administration Créer mon blog

FIREFOX DoS exploit

Time sent Dur. Process Request IRP Flags FsContext Path Status More info 1 19:02:10.984 0 msimn.exe IRP_MJ_QUERY_INFORMATION 00000010 E19D50D0 C:Program FilesOutlook Expressmsimn.exe STATUS_SUCCESS FileNameInformation2 19:02:11.000 0 msimn.exe IRP_MJ_QUERY_INFORMATION...

Lire la suite

DLL Injection in Firefox.exe

DLL Injection in Firefox.exe

NB. The tool has been renamed for T.O.S reasons, but can be easily found for free. We launch the injector tool via CMD: We launch the command "kareldjagdll firefox hookdll_heap.dll" If we check the loaded modules of Firefox, we distinguish the new dll:...

Lire la suite

HAXSPY Profiling

HAXSPY Profiling

The scan on VirusTotal: Creation of objects (service/driver, dll and registry entry) : Process memory injection in explorer.exe: Hooks in ntdll: Network connections: Some other actions: -the loaded driver and service: A summarize of the actions: The complete...

Lire la suite