-
Deep dive analysis of Emotet - http://www.neil-fox.com Includes breakdown of how the malware generates its filename using the volume serial number of the infected machine and a list of of pre-configured strings.
#dfir#malware#x32dbg pic.twitter.com/gqS8Cqxj7n
-
When learning windows shellcoding, I didn't find a single blog which properly explains how to and why to find the base address of kernel32.dll. A detailed blogpost will be posted tomorrow on this. Wrote almost a 15 page draft.
#windbg#Scriptdotsh#x32dbg#Nasm#Shellcoding -
Solution for 5th level for Flare-On 2019 is online - demo. Might be the craziest solutions for all the available
https://youtu.be/Dn8byTPeGRE #flareon#flare#x32dbg#blender -
Good thing
#x32dbg reminded me that it’s Christmas Eve pic.twitter.com/sPehVZcEAx
-
Unpack first stage, analysis second stage of
#icedid#malware with the use of#ghidra /#x32dbg.@malware_traffic@anyrun_app@VK_Intel https://medium.com/@dawid.golak/icedid-aka-bokbot-analysis-with-ghidra-560e3eccb766 …pic.twitter.com/FMDhRaRHjK
-
Chetan Nayak (
@NinjaParanoid) is back with new blog on Windows Shellcoding at#scriptdotsh.#assembly#x86#x32dbg#shellcoding https://lnkd.in/fHcMp5S -
Spent a whole day differentiating kernel32.dll and ntdll.dll starting from WinXp, 7, Vista, 8 to 10 in
#PEView and#x32dbg on how to build single shellcode to work across all NT Systems. Revelations
Next is differentiating the DEP/ASLR/SEH of different versions for #ExploitDev! -
My solution for MugatuWare from Flare-On 2019 is out
https://youtu.be/xVBQHVQrmCE With a special thank you to @megabeets_#flareon#reversing#reverseengineering#mugatu#ghidra#x32dbg -
Read this super awesome and n00b-friendly post on Windows Shellcoding by my buddy Chetan Nayak (
@NinjaParanoid) on#scriptdotsh#shellcoding#x86#windbg#x32dbg#assembly https://lnkd.in/f8YqpGp -
Wondering if
#mona can be run inside@x64dbg#x32dbg@corelanc0d3r
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.