├── .gitignore ├── .gitmodules ├── Detours ├── Detours.vcxproj └── Detours.vcxproj.filters ├── Dummy ├── Dummy.cpp ├── Dummy.vcxproj └── Dummy.vcxproj.filters ├── GenerateRelease.cmd ├── LICENSE.txt ├── PEDoll.sln ├── PEDollController ├── BlobFormatters │ ├── FmtHex.cs │ ├── FmtRaw.cs │ ├── FmtText.cs │ ├── FmtX86.cs │ ├── IBlobFormatter.cs │ └── Util.cs ├── Commands │ ├── CmdBreak.cs │ ├── CmdDump.cs │ ├── CmdEnd.cs │ ├── CmdEval.cs │ ├── CmdExit.cs │ ├── CmdHelp.cs │ ├── CmdHook.cs │ ├── CmdKill.cs │ ├── CmdListen.cs │ ├── CmdLoad.cs │ ├── CmdLoaddll.cs │ ├── CmdPs.cs │ ├── CmdRem.cs │ ├── CmdShell.cs │ ├── CmdTarget.cs │ ├── CmdUnhook.cs │ ├── CmdVerdict.cs │ ├── CommandLine.cs │ ├── ICommand.cs │ ├── Util.cs │ └── cmdDoll.cs ├── FDlgAbout.Designer.cs ├── FDlgAbout.cs ├── FDlgAbout.resx ├── FDlgAbout.zh-CN.resx ├── FDlgAddHook.Designer.cs ├── FDlgAddHook.cs ├── FDlgAddHook.resx ├── FDlgAddHook.zh-CN.resx ├── FDlgBrowsePID.Designer.cs ├── FDlgBrowsePID.cs ├── FDlgBrowsePID.resx ├── FDlgBrowsePID.zh-CN.resx ├── FMain.Designer.cs ├── FMain.cs ├── FMain.resx ├── FMain.zh-CN.resx ├── FSplash.Designer.cs ├── FSplash.cs ├── FSplash.resx ├── Logger.cs ├── PEDollController.csproj ├── Program.cs ├── Properties │ ├── AssemblyInfo.cs │ ├── Resources.Designer.cs │ ├── Resources.resx │ ├── Resources.zh-CN.resx │ ├── Settings.Designer.cs │ └── Settings.settings ├── Puppet │ ├── Puppet.cs │ └── Util.cs ├── Resources │ ├── CREDITS.txt │ ├── Controller.ico │ ├── Controller.png │ ├── Controller.svg │ └── Splash.png ├── Threads │ ├── AsyncDataProvider.cs │ ├── BlockingQueue.cs │ ├── Client.cs │ ├── CmdEngine.cs │ ├── EvalEngine.cs │ ├── EvalEngineContext.cs │ ├── Gui.cs │ └── Listener.cs ├── app.config └── packages.config ├── PEDollMonitor ├── Doll.cpp ├── Doll.h ├── GetFileVersion.cpp ├── GetFileVersion.h ├── PEDollMonitor.cpp ├── PEDollMonitor.h ├── PEDollMonitor.rc ├── PEDollMonitor.vcxproj ├── PEDollMonitor.vcxproj.filters ├── Proc.cpp ├── Proc.h ├── SetPrivilege.cpp ├── SetPrivilege.h ├── ThreadPuppet.cpp ├── framework.h ├── pch.cpp ├── pch.h └── resource.h ├── README.md ├── README.zh-CN.md ├── Scripts ├── API │ ├── CreateFile.txt │ ├── CreateProcess.txt │ ├── DeleteFile.txt │ ├── ExitWindowsEx.txt │ ├── LoadLibraryEx.txt │ ├── MessageBox.txt │ ├── OpenProcess.txt │ ├── RegCreateKeyEx.txt │ ├── RegOpenKeyEx.txt │ ├── RegSetKeyValue.txt │ ├── SetFileAttributes.txt │ ├── WriteFile.txt │ ├── WriteProcessMemory.txt │ ├── recv.txt │ ├── recvfrom.txt │ ├── send.txt │ └── sendto.txt ├── Break_on_MessageBox.txt ├── Break_on_MessageBox_64.txt ├── HTTP.txt ├── MBR_Ransom.txt ├── MBR_Ransom_64.txt ├── Registry.txt ├── Remote_Trojan.txt ├── TCP.txt └── UDP.txt ├── libDoll ├── BoyerMoore.cpp ├── BoyerMoore.h ├── Hook.cpp ├── Hook.h ├── HookStub.cpp ├── HookStub.h ├── HookStub_x64.asm ├── HookStub_x86.asm ├── Thread.cpp ├── Thread.h ├── ThreadPuppet.cpp ├── dllmain.cpp ├── framework.h ├── libDoll.h ├── libDoll.rc ├── libDoll.vcxproj ├── libDoll.vcxproj.filters ├── pch.cpp ├── pch.h └── resource.h └── libPuppet ├── PuppetClientTCP.cpp ├── PuppetClientTCP.h ├── framework.h ├── libPuppet.cpp ├── libPuppet.h ├── libPuppet.vcxproj ├── libPuppet.vcxproj.filters ├── pch.cpp └── pch.h /.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/.gitignore -------------------------------------------------------------------------------- /.gitmodules: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/.gitmodules -------------------------------------------------------------------------------- /Detours/Detours.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Detours/Detours.vcxproj -------------------------------------------------------------------------------- /Detours/Detours.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Detours/Detours.vcxproj.filters -------------------------------------------------------------------------------- /Dummy/Dummy.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Dummy/Dummy.cpp -------------------------------------------------------------------------------- /Dummy/Dummy.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Dummy/Dummy.vcxproj -------------------------------------------------------------------------------- /Dummy/Dummy.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Dummy/Dummy.vcxproj.filters -------------------------------------------------------------------------------- /GenerateRelease.cmd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/GenerateRelease.cmd -------------------------------------------------------------------------------- /LICENSE.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/LICENSE.txt -------------------------------------------------------------------------------- /PEDoll.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDoll.sln -------------------------------------------------------------------------------- /PEDollController/BlobFormatters/FmtHex.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/BlobFormatters/FmtHex.cs -------------------------------------------------------------------------------- /PEDollController/BlobFormatters/FmtRaw.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/BlobFormatters/FmtRaw.cs -------------------------------------------------------------------------------- /PEDollController/BlobFormatters/FmtText.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/BlobFormatters/FmtText.cs -------------------------------------------------------------------------------- /PEDollController/BlobFormatters/FmtX86.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/BlobFormatters/FmtX86.cs -------------------------------------------------------------------------------- /PEDollController/BlobFormatters/IBlobFormatter.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/BlobFormatters/IBlobFormatter.cs -------------------------------------------------------------------------------- /PEDollController/BlobFormatters/Util.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/BlobFormatters/Util.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdBreak.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdBreak.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdDump.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdDump.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdEnd.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdEnd.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdEval.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdEval.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdExit.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdExit.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdHelp.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdHelp.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdHook.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdHook.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdKill.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdKill.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdListen.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdListen.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdLoad.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdLoad.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdLoaddll.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdLoaddll.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdPs.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdPs.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdRem.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdRem.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdShell.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdShell.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdTarget.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdTarget.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdUnhook.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdUnhook.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CmdVerdict.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CmdVerdict.cs -------------------------------------------------------------------------------- /PEDollController/Commands/CommandLine.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/CommandLine.cs -------------------------------------------------------------------------------- /PEDollController/Commands/ICommand.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/ICommand.cs -------------------------------------------------------------------------------- /PEDollController/Commands/Util.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/Util.cs -------------------------------------------------------------------------------- /PEDollController/Commands/cmdDoll.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Commands/cmdDoll.cs -------------------------------------------------------------------------------- /PEDollController/FDlgAbout.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAbout.Designer.cs -------------------------------------------------------------------------------- /PEDollController/FDlgAbout.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAbout.cs -------------------------------------------------------------------------------- /PEDollController/FDlgAbout.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAbout.resx -------------------------------------------------------------------------------- /PEDollController/FDlgAbout.zh-CN.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAbout.zh-CN.resx -------------------------------------------------------------------------------- /PEDollController/FDlgAddHook.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAddHook.Designer.cs -------------------------------------------------------------------------------- /PEDollController/FDlgAddHook.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAddHook.cs -------------------------------------------------------------------------------- /PEDollController/FDlgAddHook.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAddHook.resx -------------------------------------------------------------------------------- /PEDollController/FDlgAddHook.zh-CN.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgAddHook.zh-CN.resx -------------------------------------------------------------------------------- /PEDollController/FDlgBrowsePID.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgBrowsePID.Designer.cs -------------------------------------------------------------------------------- /PEDollController/FDlgBrowsePID.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgBrowsePID.cs -------------------------------------------------------------------------------- /PEDollController/FDlgBrowsePID.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgBrowsePID.resx -------------------------------------------------------------------------------- /PEDollController/FDlgBrowsePID.zh-CN.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FDlgBrowsePID.zh-CN.resx -------------------------------------------------------------------------------- /PEDollController/FMain.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FMain.Designer.cs -------------------------------------------------------------------------------- /PEDollController/FMain.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FMain.cs -------------------------------------------------------------------------------- /PEDollController/FMain.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FMain.resx -------------------------------------------------------------------------------- /PEDollController/FMain.zh-CN.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FMain.zh-CN.resx -------------------------------------------------------------------------------- /PEDollController/FSplash.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FSplash.Designer.cs -------------------------------------------------------------------------------- /PEDollController/FSplash.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FSplash.cs -------------------------------------------------------------------------------- /PEDollController/FSplash.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/FSplash.resx -------------------------------------------------------------------------------- /PEDollController/Logger.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Logger.cs -------------------------------------------------------------------------------- /PEDollController/PEDollController.csproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/PEDollController.csproj -------------------------------------------------------------------------------- /PEDollController/Program.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Program.cs -------------------------------------------------------------------------------- /PEDollController/Properties/AssemblyInfo.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Properties/AssemblyInfo.cs -------------------------------------------------------------------------------- /PEDollController/Properties/Resources.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Properties/Resources.Designer.cs -------------------------------------------------------------------------------- /PEDollController/Properties/Resources.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Properties/Resources.resx -------------------------------------------------------------------------------- /PEDollController/Properties/Resources.zh-CN.resx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Properties/Resources.zh-CN.resx -------------------------------------------------------------------------------- /PEDollController/Properties/Settings.Designer.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Properties/Settings.Designer.cs -------------------------------------------------------------------------------- /PEDollController/Properties/Settings.settings: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Properties/Settings.settings -------------------------------------------------------------------------------- /PEDollController/Puppet/Puppet.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Puppet/Puppet.cs -------------------------------------------------------------------------------- /PEDollController/Puppet/Util.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Puppet/Util.cs -------------------------------------------------------------------------------- /PEDollController/Resources/CREDITS.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Resources/CREDITS.txt -------------------------------------------------------------------------------- /PEDollController/Resources/Controller.ico: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Resources/Controller.ico -------------------------------------------------------------------------------- /PEDollController/Resources/Controller.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Resources/Controller.png -------------------------------------------------------------------------------- /PEDollController/Resources/Controller.svg: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Resources/Controller.svg -------------------------------------------------------------------------------- /PEDollController/Resources/Splash.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Resources/Splash.png -------------------------------------------------------------------------------- /PEDollController/Threads/AsyncDataProvider.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/AsyncDataProvider.cs -------------------------------------------------------------------------------- /PEDollController/Threads/BlockingQueue.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/BlockingQueue.cs -------------------------------------------------------------------------------- /PEDollController/Threads/Client.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/Client.cs -------------------------------------------------------------------------------- /PEDollController/Threads/CmdEngine.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/CmdEngine.cs -------------------------------------------------------------------------------- /PEDollController/Threads/EvalEngine.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/EvalEngine.cs -------------------------------------------------------------------------------- /PEDollController/Threads/EvalEngineContext.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/EvalEngineContext.cs -------------------------------------------------------------------------------- /PEDollController/Threads/Gui.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/Gui.cs -------------------------------------------------------------------------------- /PEDollController/Threads/Listener.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/Threads/Listener.cs -------------------------------------------------------------------------------- /PEDollController/app.config: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/app.config -------------------------------------------------------------------------------- /PEDollController/packages.config: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollController/packages.config -------------------------------------------------------------------------------- /PEDollMonitor/Doll.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/Doll.cpp -------------------------------------------------------------------------------- /PEDollMonitor/Doll.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/Doll.h -------------------------------------------------------------------------------- /PEDollMonitor/GetFileVersion.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/GetFileVersion.cpp -------------------------------------------------------------------------------- /PEDollMonitor/GetFileVersion.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/GetFileVersion.h -------------------------------------------------------------------------------- /PEDollMonitor/PEDollMonitor.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/PEDollMonitor.cpp -------------------------------------------------------------------------------- /PEDollMonitor/PEDollMonitor.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/PEDollMonitor.h -------------------------------------------------------------------------------- /PEDollMonitor/PEDollMonitor.rc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/PEDollMonitor.rc -------------------------------------------------------------------------------- /PEDollMonitor/PEDollMonitor.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/PEDollMonitor.vcxproj -------------------------------------------------------------------------------- /PEDollMonitor/PEDollMonitor.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/PEDollMonitor.vcxproj.filters -------------------------------------------------------------------------------- /PEDollMonitor/Proc.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/Proc.cpp -------------------------------------------------------------------------------- /PEDollMonitor/Proc.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/Proc.h -------------------------------------------------------------------------------- /PEDollMonitor/SetPrivilege.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/SetPrivilege.cpp -------------------------------------------------------------------------------- /PEDollMonitor/SetPrivilege.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/SetPrivilege.h -------------------------------------------------------------------------------- /PEDollMonitor/ThreadPuppet.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/ThreadPuppet.cpp -------------------------------------------------------------------------------- /PEDollMonitor/framework.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/framework.h -------------------------------------------------------------------------------- /PEDollMonitor/pch.cpp: -------------------------------------------------------------------------------- 1 | #include "pch.h" 2 | -------------------------------------------------------------------------------- /PEDollMonitor/pch.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/pch.h -------------------------------------------------------------------------------- /PEDollMonitor/resource.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/PEDollMonitor/resource.h -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/README.md -------------------------------------------------------------------------------- /README.zh-CN.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/README.zh-CN.md -------------------------------------------------------------------------------- /Scripts/API/CreateFile.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/CreateFile.txt -------------------------------------------------------------------------------- /Scripts/API/CreateProcess.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/CreateProcess.txt -------------------------------------------------------------------------------- /Scripts/API/DeleteFile.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/DeleteFile.txt -------------------------------------------------------------------------------- /Scripts/API/ExitWindowsEx.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/ExitWindowsEx.txt -------------------------------------------------------------------------------- /Scripts/API/LoadLibraryEx.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/LoadLibraryEx.txt -------------------------------------------------------------------------------- /Scripts/API/MessageBox.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/MessageBox.txt -------------------------------------------------------------------------------- /Scripts/API/OpenProcess.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/OpenProcess.txt -------------------------------------------------------------------------------- /Scripts/API/RegCreateKeyEx.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/RegCreateKeyEx.txt -------------------------------------------------------------------------------- /Scripts/API/RegOpenKeyEx.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/RegOpenKeyEx.txt -------------------------------------------------------------------------------- /Scripts/API/RegSetKeyValue.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/RegSetKeyValue.txt -------------------------------------------------------------------------------- /Scripts/API/SetFileAttributes.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/SetFileAttributes.txt -------------------------------------------------------------------------------- /Scripts/API/WriteFile.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/WriteFile.txt -------------------------------------------------------------------------------- /Scripts/API/WriteProcessMemory.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/WriteProcessMemory.txt -------------------------------------------------------------------------------- /Scripts/API/recv.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/recv.txt -------------------------------------------------------------------------------- /Scripts/API/recvfrom.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/recvfrom.txt -------------------------------------------------------------------------------- /Scripts/API/send.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/send.txt -------------------------------------------------------------------------------- /Scripts/API/sendto.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/API/sendto.txt -------------------------------------------------------------------------------- /Scripts/Break_on_MessageBox.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/Break_on_MessageBox.txt -------------------------------------------------------------------------------- /Scripts/Break_on_MessageBox_64.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/Break_on_MessageBox_64.txt -------------------------------------------------------------------------------- /Scripts/HTTP.txt: -------------------------------------------------------------------------------- 1 | # TODO -------------------------------------------------------------------------------- /Scripts/MBR_Ransom.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/MBR_Ransom.txt -------------------------------------------------------------------------------- /Scripts/MBR_Ransom_64.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/MBR_Ransom_64.txt -------------------------------------------------------------------------------- /Scripts/Registry.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/Scripts/Registry.txt -------------------------------------------------------------------------------- /Scripts/Remote_Trojan.txt: -------------------------------------------------------------------------------- 1 | # TODO (load {CreateFile, Registry, TCP, UDP}) -------------------------------------------------------------------------------- /Scripts/TCP.txt: -------------------------------------------------------------------------------- 1 | # TODO (ctx dictionary: send, recv) -------------------------------------------------------------------------------- /Scripts/UDP.txt: -------------------------------------------------------------------------------- 1 | # TODO (ctx dictionary: sendto, recvfrom) -------------------------------------------------------------------------------- /libDoll/BoyerMoore.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/BoyerMoore.cpp -------------------------------------------------------------------------------- /libDoll/BoyerMoore.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/BoyerMoore.h -------------------------------------------------------------------------------- /libDoll/Hook.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/Hook.cpp -------------------------------------------------------------------------------- /libDoll/Hook.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/Hook.h -------------------------------------------------------------------------------- /libDoll/HookStub.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/HookStub.cpp -------------------------------------------------------------------------------- /libDoll/HookStub.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/HookStub.h -------------------------------------------------------------------------------- /libDoll/HookStub_x64.asm: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/HookStub_x64.asm -------------------------------------------------------------------------------- /libDoll/HookStub_x86.asm: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/HookStub_x86.asm -------------------------------------------------------------------------------- /libDoll/Thread.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/Thread.cpp -------------------------------------------------------------------------------- /libDoll/Thread.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/Thread.h -------------------------------------------------------------------------------- /libDoll/ThreadPuppet.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/ThreadPuppet.cpp -------------------------------------------------------------------------------- /libDoll/dllmain.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/dllmain.cpp -------------------------------------------------------------------------------- /libDoll/framework.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/framework.h -------------------------------------------------------------------------------- /libDoll/libDoll.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/libDoll.h -------------------------------------------------------------------------------- /libDoll/libDoll.rc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/libDoll.rc -------------------------------------------------------------------------------- /libDoll/libDoll.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/libDoll.vcxproj -------------------------------------------------------------------------------- /libDoll/libDoll.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/libDoll.vcxproj.filters -------------------------------------------------------------------------------- /libDoll/pch.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/pch.cpp -------------------------------------------------------------------------------- /libDoll/pch.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/pch.h -------------------------------------------------------------------------------- /libDoll/resource.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libDoll/resource.h -------------------------------------------------------------------------------- /libPuppet/PuppetClientTCP.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/PuppetClientTCP.cpp -------------------------------------------------------------------------------- /libPuppet/PuppetClientTCP.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/PuppetClientTCP.h -------------------------------------------------------------------------------- /libPuppet/framework.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/framework.h -------------------------------------------------------------------------------- /libPuppet/libPuppet.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/libPuppet.cpp -------------------------------------------------------------------------------- /libPuppet/libPuppet.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/libPuppet.h -------------------------------------------------------------------------------- /libPuppet/libPuppet.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/libPuppet.vcxproj -------------------------------------------------------------------------------- /libPuppet/libPuppet.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/libPuppet.vcxproj.filters -------------------------------------------------------------------------------- /libPuppet/pch.cpp: -------------------------------------------------------------------------------- 1 | #include "pch.h" 2 | -------------------------------------------------------------------------------- /libPuppet/pch.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/EZForever/PEDoll/HEAD/libPuppet/pch.h --------------------------------------------------------------------------------