Using the Windows Filtering Platform to block EDR traffic.
Category: Malware Dev
Function Name Hashing
Replacing existing ROR13 function hash names in shellcode to evade signature based detection.
Replacing existing ROR13 function hash names in shellcode to evade signature based detection.