Видео с ютуба Process Environment Block
Understanding The PEB for Reverse Engineers
Windows Internals: Walking the Process Environment Block to Discover In-Memory Libraries
What is Process Hollowing?
מערכות הפעלה | (PEB (Process Environment Block - חלק 1
Windows Internals - Processes and Threads Explained
Windows Internals - Processes Part 14 of 20 - Assets of process Env Vars and cmd line args
Finding BaseDllName from Process Environment Block (PEB)
PEB & InMemoryOrderModuleList Explained
Lost in Transaction: Process Doppelgänging
Process and Threads -Windbg Part 19
Exploring PEB with WinDbg
Walking the PEB with WinDbg
What are Processes? | Windows Internals
Process Ghosting: Evading Antivirus Detection on Windows - Caleb Munn
PMA 432 WinDbg Preview Kernel Debugging
PMA 432 WinDbg Preview Kernel Debugging
Getting Started with Ghidra: Analyzing Process Hollowing Shellcode from a Maldoc
PEB Basic Anti Debugging
1 Reverse Engineering Process Injection Part 1
2.6 Building a virtual environment - Anti VM and Anti Debug