Tags » WoW64

DLL/PIC Injection on Windows from Wow64 process

Introduction

Injecting PIC (Position Independent Code) into a remote process is trivial enough for a programmer but if they try using CreateRemoteThread() API from Wow64 against a 64-bit process, it fails. 1,493 more words

Programming

Asmcodes: Platform Independent PIC for Loading DLL and Executing Commands

Introduction

A PIC (Position Independent Code) is a set of CPU instructions that will execute successfully regardless of where it resides in memory.

The general idea is that it doesn’t depend on any external API or library and if it does, it’ll locate what it needs and still manage to run smoothly. 1,719 more words

Programming