Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime
Requirements:
- macaddress
pip install macaddress
./bin2mac.py calc.bin
Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime
C++MIT