ALERT!
Click here to register with a few steps and explore all our cool stuff we have to offer!
Secondary Sellers

x64 PE Infector and Loader for win10 / 11.

Submitted by Remio at 13-04-2025, 11:51 PM


x64 PE Infector and Loader for win10 / 11.
313 Views
Remio's Avatar'
Remio
Offline
#1
Compact tool for injecting payloads into 64-bit Windows PE files.
Adds a .payload section, redirects the entry point to execute custom shellcode, 
and restores the original entry point (OEP) for seamless functionality.

Features:
- 7/8KB - Very tiny (test payload 150 bytes) 
- Full entry point redirection with OEP restoration.
- RIP-relative shellcode, ASLR/PIE compliant.
- RWX .payload section with auto-alignment.
- Anti-reinfection marker.
- MessageBoxA PoC.
- Preserves PE imports, relocations, and TLS.
- Built in C (MSVC), no dependencies.
- Swap out the demo stub with your own shellcode. 
- Supports encrypted payloads, syscall resolution, and metadata obfuscation for more research.

-$210

- Demo in Remy's demos channel - check signature.
0
Reply


Messages In This Thread
x64 PE Infector and Loader for win10 / 11. - by Remio - 13-04-2025, 11:51 PM


Users browsing this thread: 1 Guest(s)