Here’s an over-engineered way to automatically resolve API hashes (used in shellcode) via emulation and tainting: https://gist.github.com/williballenthin/1cb2512b726d3bbc955746f69eaed0da
@williballenthin
Here’s an over-engineered way to automatically resolve API hashes (used in shellcode) via emulation and tainting: https://gist.github.com/williballenthin/1cb2512b726d3bbc955746f69eaed0da