Skip to content

C program which hooks to a running process, injects and executes virus and detaches. Acts much like a debugger. Allows arbitrary code execution on a running process.

Notifications You must be signed in to change notification settings

vinkomlacic/tracer

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

82 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Tracer

Tracer is a C program which attaches to a running process (Tracee) and takes control of the execution flow.

Installation

Use make in order to build the program.

make

Log levels

There are five log levels (trace, debug, info, warn, error). Default log levels are defined in the makefile (info and warn) and error log level can't be suppressed. To suppress or enable other log levels, build the file as follows specifying log levels you want to output.

make MACROS=TRACE_ENABLE DEBUG_ENABLE INFO_ENABLE

Compilers

You can change the compiler which is used to build the program like so:

make CC=clang

The default compiler is gcc.

Building the tracee

There is a source code provided in the project folder which can make a suitable Tracee program for testing.

make tracee

Usage

./tracer -p <process_name> -b <path_to_process_binary> -e <entry_function> -c 

For more information use the -h option.

About

C program which hooks to a running process, injects and executes virus and detaches. Acts much like a debugger. Allows arbitrary code execution on a running process.

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published