Media Summary: The goal is that when Notepad.exe calls the GetLocalTime Win32 API from kernel32.dll, my code will return the date of today ... Be better than yesterday - This video showcases how you can hide the Win32 APIs used by your program in the program's The class materials are available at Follow us on Twitter for class news ...

Writing Custom Malware Import Address Table Hooking - Detailed Analysis & Overview

The goal is that when Notepad.exe calls the GetLocalTime Win32 API from kernel32.dll, my code will return the date of today ... Be better than yesterday - This video showcases how you can hide the Win32 APIs used by your program in the program's The class materials are available at Follow us on Twitter for class news ... Just a quick tutorial on how to unpack sodinokibi (revil) This session features eversinc33 giving an intro to syscalls implementations for Windows

Photo Gallery

Writing Custom Malware: Import Address Table Hooking
Rootkits (Part 4): Import Address Table Hooking
Hooking the Import Address Table of notepad.exe to make it think that it's 10 years ago
How to hide Win32 APIs from Import Address Table (IAT) Cyber Security
2013 Day2P04 LoB: IAT Hooking Demo
REvil Ransomware Unpacked - Cheeky Hack To Build Import Address Table
Winapi Hooking by IAT Patching
Hooking IAT using DLL
Intro to Syscalls for Windows Malware
How Malware Hides API Calls: Dynamic API Hashing and IAT Evasion Explained
Malware Development: System Calls
API Hooking - RTO: Malware Development Intermediate course teaser
Sponsored
Sponsored
View Detailed Profile
Sponsored
Sponsored