Shared by RastaMouse : https://x.com/_RastaMouse/status/1862881768178606155
Blogs
Tools
We can detect hooks by looking at the first 4 bytes of an API instruction.
Generally they are in sequence of 0x4c, 0x8b, 0xd1, 0xb8
0x4c, 0x8b, 0xd1, 0xb8