POC . the dropper exec the opencl code into the gpu kernel.
and then it read out the result into CPU and injects it into RAM (DLL) (remote process)
then it unloads it self and the reinject the payload evry 10sec so the payload is just inejcted few seconds
TADA! a ghost in the GPU ...
Inga kommentarer:
Skicka en kommentar