Skip to content

ChoiSG/GwisinMsi

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

GwisinMsi

This repo contains the PoC of the MSI payload used in the blog post. The payload is based on the Gwisin ransomware's MSI payload analysis of the AhnLab ASEC team's blog post.

DLL Compiling Configuration

  • Project > Project properties > c/c++ > preprocessor > processor definition - _CRT_SECURE_NO_WARNINGS
  • Project > Project properties > Charset > Multi-byte

Credits and References

Demo

Demo

About

PoC MSI payload based on ASEC/AhnLab's blog post

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published