Unholy Unhooking: FrByoDLL
Using pe2shc, we'll load a clean copy of ntdll.dll in memory, unhook our program, and execute our malicious payload.
Part One: Introduction

Part Two: Bringing Back the Classics
Part Three: tHe cod3

Part Four: ????
Part Five: Profit



Part Six: Conclusion
References
Last updated
