C# Process Injection


Author: Dave
Date: 12.05.11 - 1:16am



Todays task brought me to working on vc6 process injection dll along with a VB6 UI to receive the WM_COPYDATA output. I had all the VB6 code already from SysAnalyzer, but as I looked at the dependencies this small UI project required I couldnt help but wonder if C# could do it cleaner.

In VB6 I would have been including my subclass dll, vbdevkit for WinApi Md5 hashing, RICHTX32.OCX and mscomctl.ocx.

Thats a lot of shit for a small UI and it means if I wanted anyone else to be able to run it, I would need to include all of these files along with a bat script to register them (or an installer). All in all it would have been like an extra 3mb of dependencies for a 20k UI!

After some quick googling to see if C# can support subclassing and WM_COPYDATA it was on. C# had native support for everything I needed from the subclass, to the hashing, to prebuilt support for common dialong, rich text box control, listviews and tab controls. Final exe size was 19k and only needed the runtime. Also the code was a lot smaller without having to include my own common dialog class etc.

It pains me to say it, but C# was a better choice for this app than VB6. I also like that C# is not limited as to staying in the "safe" sandbox like Java apps are. While all the managed types can be a bit of a pita when you just want to access raw data and convert it around,the massive amount of built in functionality is pretty attractive.

I am also going to say that I am glad I wait until now to start working my way into C#. There is now a huge codebase available for C# along with web answers and examples to everything I can think of which makes learning it a breeze. I am not an early adopter of new technologies exactly for that reason.

Also I have to admit I was very pleased to see how easy subclassing was. When I first saw the code, I couldnt believe that was it. In vb6 land subclassing can be a very shitty experience necessitating you include a module, and call back, and leads to IDE instability while developing if you do anything wrong or even break at the wrong time.




Comments: (0)

 
Leave Comment:
Name:
Email: (not shown)
Message: (Required)
Math Question: 19 + 37 = ? followed by the letter: U 



About Me
More Blogs
Main Site
Posts:
Console tricks
FireFox temp dir
OCX License
Extract substring
VB6 Console Apps
VB6 UDTs
VB6 Debugger View As Hex tooltips
VB6 - C Share registry data
VB6 Addin Missing Menus
VB6 Class Init Params
VB6 isIn function
Python and VB6
Python pros and cons
download web Dir
vc rand in python
VB6 Language Enhancement
Register .NET as COM
VB6 CDECL
UDT Tricks pt2
Remote Data Extraction
Collection Extender
VB6 FindResource
CDO.Message
DirList Single Click
Reset CheckPoint VPN Policy
VB6 BSTR Oddities Explained
SafeArrays in C
BSTR and Variant in C++
Property let optional args
Misc Libs
Enum Named Pipes
Vb6 Collection in C++
VB6 Overloaded Methods
EXPORT FUNCDNAME Warning
VB6 Syncronous Socket
Simple IPC
VB6 Auto Resize Form Elements
Mach3 Automation
Exit For in While
C# self register ocx
VB6 Class Method Pointers
JS Debugger
Duktape Debug Protocol
QtScript 4 VB
Vb6 Named Args
vb6 Addin Part 2
VB6 Addin vrs Toolbars
OpenFile Dialog MultiSelect
Duktape Example
DukTape JS
VB6 Unsigned
.Net version
TitleBar Height
.NET again
VB6 Self Register OCXs
Query Last 12 Mos
Progid from Interface ID
VB6 to C Array Examples
Human Readable Variant Type
ScriptBasic COM Integration
CodeView Addin
ScriptBasic - Part 2
Script Env
MSCOMCTL Win7 Error
printf override
History Combo
Disable IE
API Hooking in VB6
Addin Hook Events
FastBuild Addin
VB6 MemoryWindow
Link C Obj Files into VB6
Vb6 Standard Dlls
CStr for Pascal
Lazarus Review
asprintf for VS
VB6 GlobalMultiUse
Scintilla in VB6
Dynamic Highlight
WinVerifyTrust, CryptMsgGetParam VB6
MS GLEE Graphing
printf for VB6
C# App Config
Tero DES C# Test
VC 2008 Bit Fields
Speed trap
C# Db Class Generator
VB6 vrs .NET (again)
FireFox Whois Extension
git and vb6
Code Additions
Compiled date to string
C# ListView Sorter
VB6 Wish List
C# Process Injection
CAPTCHA Bots
C# PE Offset Calculator
VB6 Async Download
Show Desktop
coding philosophy
Code release
Dll Not Found in IDE
Advanced MSScript Control
random tip
Clipart / Vector Art
VB6 Callback from C#
Binary data from VB6 to C#
CSharp and MsScriptControl
HexDumper functions
Js Beautify From VB6 or C#
vb6 FormPos
Inline Asm w VB6
The .NET Fiasco
One rub on computers
Universal extractor