TransWikia.com

Bypass anti memory dump with process hacker and dump the malware?

Reverse Engineering Asked on December 20, 2020

I have a malware that has some sort of anti dumping technique, so when i dump a region of memory with process hacker it dumps a 0 byte file, i am also running the process hacker as a unrestricted user too.

the malware doesnt have any kernel module so whathever its doing its in user mode, why is process hacker failing to bypass this with its driver? how can i dump a memory region and bypass anti memory dumping techniques from user mode?

Add your own answers!

Ask a Question

Get help from others!

© 2024 TransWikia.com. All rights reserved. Sites we Love: PCI Database, UKBizDB, Menu Kuliner, Sharing RPP