├── .gitIgnore ├── Jenkinsfile ├── README.md ├── UI ├── UI.cpp ├── UI.vcxproj ├── findPFNDatabase.cpp ├── findPFNDatabase.h ├── pch.cpp └── pch.h ├── cowspot.sln ├── documentation ├── moduleStompingBlogPost-part-1.docx ├── moduleStompingBlogPost-part-2.docx ├── moduleStompingBlogPost-part-3.docx └── shellcode.raw ├── driver ├── driver.c ├── driver.h ├── driver.inf ├── driver.vcxproj └── public.h ├── inject ├── inject.cpp ├── inject.vcxproj ├── pch.cpp └── pch.h ├── inject_simple ├── inject_simple.cpp ├── inject_simple.vcxproj ├── pch.cpp ├── pch.h └── shellcode.h ├── injectionPayloads ├── Makefile ├── exception.cpp ├── globalCstrs.cpp ├── globalCstrs.dll ├── hello.cpp ├── hello.dll ├── ldscript.WindowsCodecsRaw ├── ldscript.d3d10 ├── ldscript.default ├── pivots.txt ├── tls.cpp ├── tls.dll ├── winsock.cpp └── winsock.dll └── injectionUtils ├── injectionUtils.vcxproj ├── moduleManipulation.cpp ├── moduleManipulation.h ├── public.h ├── stdafx.cpp ├── stdafx.h ├── targetver.h └── utils.cpp /.gitIgnore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/.gitIgnore -------------------------------------------------------------------------------- /Jenkinsfile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/Jenkinsfile -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/README.md -------------------------------------------------------------------------------- /UI/UI.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/UI/UI.cpp -------------------------------------------------------------------------------- /UI/UI.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/UI/UI.vcxproj -------------------------------------------------------------------------------- /UI/findPFNDatabase.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/UI/findPFNDatabase.cpp -------------------------------------------------------------------------------- /UI/findPFNDatabase.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/UI/findPFNDatabase.h -------------------------------------------------------------------------------- /UI/pch.cpp: -------------------------------------------------------------------------------- 1 | #include "pch.h" 2 | -------------------------------------------------------------------------------- /UI/pch.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/UI/pch.h -------------------------------------------------------------------------------- /cowspot.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/cowspot.sln -------------------------------------------------------------------------------- /documentation/moduleStompingBlogPost-part-1.docx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/documentation/moduleStompingBlogPost-part-1.docx -------------------------------------------------------------------------------- /documentation/moduleStompingBlogPost-part-2.docx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/documentation/moduleStompingBlogPost-part-2.docx -------------------------------------------------------------------------------- /documentation/moduleStompingBlogPost-part-3.docx: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/documentation/moduleStompingBlogPost-part-3.docx -------------------------------------------------------------------------------- /documentation/shellcode.raw: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/documentation/shellcode.raw -------------------------------------------------------------------------------- /driver/driver.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/driver/driver.c -------------------------------------------------------------------------------- /driver/driver.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/driver/driver.h -------------------------------------------------------------------------------- /driver/driver.inf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/driver/driver.inf -------------------------------------------------------------------------------- /driver/driver.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/driver/driver.vcxproj -------------------------------------------------------------------------------- /driver/public.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/driver/public.h -------------------------------------------------------------------------------- /inject/inject.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject/inject.cpp -------------------------------------------------------------------------------- /inject/inject.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject/inject.vcxproj -------------------------------------------------------------------------------- /inject/pch.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject/pch.cpp -------------------------------------------------------------------------------- /inject/pch.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject/pch.h -------------------------------------------------------------------------------- /inject_simple/inject_simple.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject_simple/inject_simple.cpp -------------------------------------------------------------------------------- /inject_simple/inject_simple.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject_simple/inject_simple.vcxproj -------------------------------------------------------------------------------- /inject_simple/pch.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject_simple/pch.cpp -------------------------------------------------------------------------------- /inject_simple/pch.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject_simple/pch.h -------------------------------------------------------------------------------- /inject_simple/shellcode.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/inject_simple/shellcode.h -------------------------------------------------------------------------------- /injectionPayloads/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/Makefile -------------------------------------------------------------------------------- /injectionPayloads/exception.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/exception.cpp -------------------------------------------------------------------------------- /injectionPayloads/globalCstrs.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/globalCstrs.cpp -------------------------------------------------------------------------------- /injectionPayloads/globalCstrs.dll: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/globalCstrs.dll -------------------------------------------------------------------------------- /injectionPayloads/hello.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/hello.cpp -------------------------------------------------------------------------------- /injectionPayloads/hello.dll: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/hello.dll -------------------------------------------------------------------------------- /injectionPayloads/ldscript.WindowsCodecsRaw: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/ldscript.WindowsCodecsRaw -------------------------------------------------------------------------------- /injectionPayloads/ldscript.d3d10: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/ldscript.d3d10 -------------------------------------------------------------------------------- /injectionPayloads/ldscript.default: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/ldscript.default -------------------------------------------------------------------------------- /injectionPayloads/pivots.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/pivots.txt -------------------------------------------------------------------------------- /injectionPayloads/tls.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/tls.cpp -------------------------------------------------------------------------------- /injectionPayloads/tls.dll: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/tls.dll -------------------------------------------------------------------------------- /injectionPayloads/winsock.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/winsock.cpp -------------------------------------------------------------------------------- /injectionPayloads/winsock.dll: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionPayloads/winsock.dll -------------------------------------------------------------------------------- /injectionUtils/injectionUtils.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/injectionUtils.vcxproj -------------------------------------------------------------------------------- /injectionUtils/moduleManipulation.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/moduleManipulation.cpp -------------------------------------------------------------------------------- /injectionUtils/moduleManipulation.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/moduleManipulation.h -------------------------------------------------------------------------------- /injectionUtils/public.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/public.h -------------------------------------------------------------------------------- /injectionUtils/stdafx.cpp: -------------------------------------------------------------------------------- 1 | #include "stdafx.h" 2 | -------------------------------------------------------------------------------- /injectionUtils/stdafx.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/stdafx.h -------------------------------------------------------------------------------- /injectionUtils/targetver.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/targetver.h -------------------------------------------------------------------------------- /injectionUtils/utils.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/WithSecureLabs/ModuleStomping/HEAD/injectionUtils/utils.cpp --------------------------------------------------------------------------------