/ProcessInjection-GO

Shellcode encryption in RC4 and process injection into explorer.exe.

Primary LanguageGoGNU General Public License v3.0GPL-3.0

ProcessInjection-GO

Shellcode encrypted in RC4 and process injection into explorer.exe. Added the patch to etwEventWrite function in order to avoid ETW tracing.

Tested with metasploit shellcode and it bypass EDR.

Encrypt your payload with RC4Encryptor.go and paste it on the main.

CRT