Malware Development
Ctrl
K
Copy
Evasion
EDR Bypass
2. Userland Hooks
1. What are userland hooks?
2. Load a fresh copy of the dll from disk
3. Programmatically detect ntdll hooks
4. Direct and Indirect Syscalls (shellcode runner)
Was this helpful?