This document introduces DoubleAgent, a zero-day technique for injecting code and maintaining persistence on Windows machines. It exploits the legitimate Windows Application Verifier Provider feature to inject malicious DLLs into any process, including privileged processes like antivirus software. Once injected, the DLLs continue executing even after reboots or software updates. The technique works on all modern Windows versions and can be used to install persistent malware, hijack process permissions, or alter process behavior without detection.