PEN-200 › Antivirus Evasion
This domain covers evading Windows Defender, AMSI, and EDR during payload delivery and execution. You must build and modify custom C# and PowerShell loaders, understand how static signatures, AMSI scanning, and behavioral process-creation monitoring detect shellcode, and apply obfuscation, encryption, and API-resolution techniques to reduce detection on target hosts.
PEN-200 Antivirus Evasion — All 45 Questions
Every question in this domain with answers and detailed explanations.