Windows Memory Management

Payload Placement - .data & .rdata Sections

Payload Placement - .text Section

Introduction To Payload Encryption

Payload Obfuscation

Local Payload Execution - DLL

Local Payload Execution - Shellcode

Process Injection - DLL Injection

Malware Binary Singing

Enumerating Process Using EnumProcesses

MiniDumpWriteDump

Kernel CallBacks

Modifying TimeStamp