0xploit.com

Malware RED TEAM Operator: Malware Development Intermediate Course By SekTor7

LikeOsado

New member
Joined
Feb 12, 2023
Messages
4
Hellcoins
♆33
d6zjic6bsxo6gahlnfwel3lgj3n0

More advanced malware development techniques in Windows, including: API hooking, 32-/64-bit migrations, reflective binaries and more.

Contents​

Intro and Setup​

Course Introduction
Development VM Setup
RTO-MalDev2.ova
RTO-MDI.zip


PE madness​

Revisiting PE file format
Walking through Export Address Table
Dancing with IAT
GetProcAddress/GetModuleHandle implementations
PE with no imports
Assignment

Code Injection​

Classic Injection Variations
Thread Context
Sections & Views
Asynchronous Procedure Calls
EarlyBird
Assignment

Reflective DLLs​

Reflective Injection Explained
ReflectiveLoader source review
Implanting RDI in source code
Shellcode RDI
Assignment

x86 vs x64​

WoW64 and Heaven's Gate
Migrating between 32-bit & 64-bit processes

Hooking​

API Hooking intro
Hooking with Detours
IAT hooks
In-line patching
Assignment

Payload Control via IPC​

MultiPayload Control

Combined Project​

Project Design
VCsniff
VCmigrate
VCpersist

Assignment #1
Assignment #2
Assignment #3

Summary​

Closing words

Watch Online Or Download:-
[Hidden content]
ty
 

madaniel900

New member
Joined
Feb 13, 2023
Messages
10
Hellcoins
♆243
d6zjic6bsxo6gahlnfwel3lgj3n0

More advanced malware development techniques in Windows, including: API hooking, 32-/64-bit migrations, reflective binaries and more.

Contents​

Intro and Setup​

Course Introduction
Development VM Setup
RTO-MalDev2.ova
RTO-MDI.zip


PE madness​

Revisiting PE file format
Walking through Export Address Table
Dancing with IAT
GetProcAddress/GetModuleHandle implementations
PE with no imports
Assignment

Code Injection​

Classic Injection Variations
Thread Context
Sections & Views
Asynchronous Procedure Calls
EarlyBird
Assignment

Reflective DLLs​

Reflective Injection Explained
ReflectiveLoader source review
Implanting RDI in source code
Shellcode RDI
Assignment

x86 vs x64​

WoW64 and Heaven's Gate
Migrating between 32-bit & 64-bit processes

Hooking​

API Hooking intro
Hooking with Detours
IAT hooks
In-line patching
Assignment

Payload Control via IPC​

MultiPayload Control

Combined Project​

Project Design
VCsniff
VCmigrate
VCpersist

Assignment #1
Assignment #2
Assignment #3

Summary​

Closing words

Watch Online Or Download:-
[Hidden content]
(y)(y)(y)(y)(y)
 

panam91

New member
Joined
Feb 14, 2023
Messages
1
Hellcoins
♆12
d6zjic6bsxo6gahlnfwel3lgj3n0

More advanced malware development techniques in Windows, including: API hooking, 32-/64-bit migrations, reflective binaries and more.

Contents​

Intro and Setup​

Course Introduction
Development VM Setup
RTO-MalDev2.ova
RTO-MDI.zip


PE madness​

Revisiting PE file format
Walking through Export Address Table
Dancing with IAT
GetProcAddress/GetModuleHandle implementations
PE with no imports
Assignment

Code Injection​

Classic Injection Variations
Thread Context
Sections & Views
Asynchronous Procedure Calls
EarlyBird
Assignment

Reflective DLLs​

Reflective Injection Explained
ReflectiveLoader source review
Implanting RDI in source code
Shellcode RDI
Assignment

x86 vs x64​

WoW64 and Heaven's Gate
Migrating between 32-bit & 64-bit processes

Hooking​

API Hooking intro
Hooking with Detours
IAT hooks
In-line patching
Assignment

Payload Control via IPC​

MultiPayload Control

Combined Project​

Project Design
VCsniff
VCmigrate
VCpersist

Assignment #1
Assignment #2
Assignment #3

Summary​

Closing words

Watch Online Or Download:-
[Hidden content]
thank you
 

pompompurinsmom

New member
Joined
Feb 4, 2023
Messages
6
Hellcoins
♆72
Just wanted to let you know that "3. Revisiting PE file format - hellofhackers.com.mp4" is not the correct file. It's a duplicate of "1. Course Introduction - hellofhackers.com.mp4", the txt files with the video link have the same link.
 

jqxw_jvnwg48

New member
Joined
Feb 19, 2023
Messages
4
Hellcoins
♆21
d6zjic6bsxo6gahlnfwel3lgj3n0

More advanced malware development techniques in Windows, including: API hooking, 32-/64-bit migrations, reflective binaries and more.

Contents​

Intro and Setup​

Course Introduction
Development VM Setup
RTO-MalDev2.ova
RTO-MDI.zip


PE madness​

Revisiting PE file format
Walking through Export Address Table
Dancing with IAT
GetProcAddress/GetModuleHandle implementations
PE with no imports
Assignment

Code Injection​

Classic Injection Variations
Thread Context
Sections & Views
Asynchronous Procedure Calls
EarlyBird
Assignment

Reflective DLLs​

Reflective Injection Explained
ReflectiveLoader source review
Implanting RDI in source code
Shellcode RDI
Assignment

x86 vs x64​

WoW64 and Heaven's Gate
Migrating between 32-bit & 64-bit processes

Hooking​

API Hooking intro
Hooking with Detours
IAT hooks
In-line patching
Assignment

Payload Control via IPC​

MultiPayload Control

Combined Project​

Project Design
VCsniff
VCmigrate
VCpersist

Assignment #1
Assignment #2
Assignment #3

Summary​

Closing words

Watch Online Or Download:-
[Hidden content]
WOwowoowowow
 

godcomplex

New member
Joined
Mar 12, 2023
Messages
3
Hellcoins
♆31
d6zjic6bsxo6gahlnfwel3lgj3n0

More advanced malware development techniques in Windows, including: API hooking, 32-/64-bit migrations, reflective binaries and more.

Contents​

Intro and Setup​

Course Introduction
Development VM Setup
RTO-MalDev2.ova
RTO-MDI.zip


PE madness​

Revisiting PE file format
Walking through Export Address Table
Dancing with IAT
GetProcAddress/GetModuleHandle implementations
PE with no imports
Assignment

Code Injection​

Classic Injection Variations
Thread Context
Sections & Views
Asynchronous Procedure Calls
EarlyBird
Assignment

Reflective DLLs​

Reflective Injection Explained
ReflectiveLoader source review
Implanting RDI in source code
Shellcode RDI
Assignment

x86 vs x64​

WoW64 and Heaven's Gate
Migrating between 32-bit & 64-bit processes

Hooking​

API Hooking intro
Hooking with Detours
IAT hooks
In-line patching
Assignment

Payload Control via IPC​

MultiPayload Control

Combined Project​

Project Design
VCsniff
VCmigrate
VCpersist

Assignment #1
Assignment #2
Assignment #3

Summary​

Closing words

Watch Online Or Download:-
[Hidden content]
thank you very much, i have been looking for this course all around the internet, now i finally found it thanks!
 
Top