0xPhoeniX / MazeWalker

Toolkit for enriching and speeding up static malware analysis
GNU Lesser General Public License v3.0
163 stars 34 forks source link

Support for CreateRemoteThread #19

Closed 0xPhoeniX closed 6 years ago

0xPhoeniX commented 6 years ago

Currently there is no support for code injection through CreateRemoteThread API to allow instrumentation of a child process.

0xPhoeniX commented 6 years ago

done.