Re: Executing an Unmanaged Exe from Memory

Tech-Archive recommends: Fix windows errors by optimizing your registry



Hi, read this:

http://groups.google.com/group/comp.os.ms-windows.programmer.win32/browse_thread/thread/31ddc628f736efd0/3fa4e10562db1d03?#3fa4e10562db1d03

Regards

Kerem

--
----------------------- Beste Grüsse / Best regards / Votre bien devoue
Kerem Gümrükcü
Latest Project: http://www.codeplex.com/restarts
Latest Open-Source Projects: http://entwicklung.junetz.de
----------------------- "This reply is provided as is, without warranty express or implied."
"tempnode" <tempnode@xxxxxxxxxxxxxxxxxxxxxxxxx> schrieb im Newsbeitrag news:38102089-5EAA-44DB-8CB8-1CB0142636AF@xxxxxxxxxxxxxxxx
I've been trying to find a way to execute an unmanaged executable from
memory; I know that a managed assembly can be embedded into a resource,
loaded with Assembly.Load, and invoked.... but I can't find a way to embed an
unmanaged executable and run it from memory.


Can anyone help me? Could I possibly inject it into a suspended process?
Is there another approach? I'm really new at this, so it may take a bit of
detailed explaining.



Thanks so much!

.



Relevant Pages

  • Re: Retrieving open COM handles from arbitrary PIDs
    ... Beste Grüsse / Best regards / Votre bien devoue ... Microsoft Live Space: http://kerem-g.spaces.live.com/ ... Latest Open-Source Projects: http://entwicklung.junetz.de ... "This reply is provided as is, without warranty express or implied." ...
    (microsoft.public.win32.programmer.kernel)
  • Re: Meaning of Device Class "00000000-0000-0000-0000-000000000000" while installing
    ... Beste Grüsse / Best regards / Votre bien devoue ... Latest Open-Source Projects: http://entwicklung.junetz.de ... "This reply is provided as is, without warranty express or implied." ... Please do not send e-mail directly to this alias. ...
    (microsoft.public.development.device.drivers)
  • Re: Retrieving open COM handles from arbitrary PIDs
    ... Beste Grüsse / Best regards / Votre bien devoue ... Microsoft Live Space: http://kerem-g.spaces.live.com/ ... Latest Open-Source Projects: http://entwicklung.junetz.de ... "This reply is provided as is, without warranty express or implied." ...
    (microsoft.public.win32.programmer.kernel)
  • Re: user mode to kernel mode I/O via named pipes
    ... Beste Grüsse / Best regards / Votre bien devoue ... Microsoft Live Space: http://kerem-g.spaces.live.com/ ... Latest Open-Source Projects: http://entwicklung.junetz.de ... "This reply is provided as is, without warranty express or implied." ...
    (microsoft.public.development.device.drivers)
  • Re: Meaning of Device Class "00000000-0000-0000-0000-000000000000" while installing
    ... Beste Grüsse / Best regards / Votre bien devoue ... Latest Open-Source Projects: http://entwicklung.junetz.de ... "This reply is provided as is, without warranty express or implied." ...
    (microsoft.public.development.device.drivers)