Windows MalDev
MDLC & ToolsArchitecture, Memory Management, APIs & ProcessesPEs & DLLsMalware Binary Signing & Metadata ModificationPayload PlacementPayload Execution ControlPayload Encryption & ObfuscationMalware Optimization: Entropy Reduction & Compile SettingsLocal Payload ExecutionProcess Enum, Injection & HollowingPayload StagingThread HijackingAPC InjectionCallback Code ExecutionMapping InjectionFunction Stomping InjectionPPID SpoofingProcess Argument SpoofingAPI HookingString HashingIAT Hiding, Obfuscation & CamouflageAnti-DebuggingAnti-VirtualizationSyscallsNTDLL Refreshing