hook finder vs Process Doppelganging

As we can see, hook_finder can detect and dump a payload injected by this loader as easy as it detects RunPE.
- hook finder: https://github.com/hasherezade/hook_f...
- Process Doppelganging implementation: https://github.com/hasherezade/proces...

hook finder vs Process Doppelganging
Reviewed by Anonymous
on
January 14, 2018
Rating:
