Content Paint

Malware Analysis

How to Use Process Hacker and DnSpy to Unpack .NET Malware

Unpacking an Asyncrat loader using Process Hacker and Dnspy

Remcos Downloader Analysis - Manual Deobfuscation of  Visual Basic and Powershell

Decoding a Remcos Loader, leveraging regex, python and Cyberchef to identify IOCs.

Understanding and Improving  The Ghidra UI for Malware Analysis

Improving Malware Analysis Workflows by Modifying the default Ghidra UI.

Cobalt Strike .VBS  Loader - Decoding with Advanced CyberChef and Emulation

Manually decoding a Cobalt Strike .vbs Loader utilising advanced CyberChef and Shellcode Emulation.

Cobalt Strike Malware Analysis With CyberChef and Emulation - .HTA Loader Example

Decoding a .hta script with CyberChef and analysing Shellcode with the SpeakEasy Emulator.

Ghidra Tutorial - Using Entropy To Locate Cobalt Strike Decryption Functions

Using Ghidra Entropy Analysis to Identify a decryption function.

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.