> For the complete documentation index, see [llms.txt](https://www.heresecurity.wiki/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei.md).

# 系统类

- [ImportDLLInjection 通过修改内存中的PE头来注入DLL的另一种方法](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/importdllinjection-tong-guo-xiu-gai-nei-cun-zhong-de-pe-tou-lai-zhu-ru-dll-de-ling-yi-zhong-fang-fa.md)
- [动态调用进程注入逻辑](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/dong-tai-diao-yong-jin-cheng-zhu-ru-luo-ji.md)
- [父进程破坏](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/fu-jin-cheng-po-huai.md)
- [进程挖空(MitreT1055.012)](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/jin-cheng-wa-kong-mitret1055.012.md)
- [使用WindowsDefender下载文件](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/shi-yong-windowsdefender-xia-zai-wen-jian.md)
- [通过挂起EventLog服务线程禁用Windows事件日志](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/tong-guo-gua-qi-eventlog-fu-wu-xian-cheng-jin-yong-windows-shi-jian-ri-zhi.md)
- [隐藏windows服务](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/yin-cang-windows-fu-wu.md)
- [远程解压文件](https://www.heresecurity.wiki/redteam-hong-dui/xi-tong-lei/yuan-cheng-jie-ya-wen-jian.md)
