|
Extractor for custom PyInstaller executables as seen in PDFly or PDFClick
|
struppigel
|
8c9d9150efa35278afcb23f2af4c4babcc4dd55acd9e839bed4c04cb5a8d9c3f
|
advanced
|
|
|
01 Feb 2026
|
|
The Wolf in AutoIt’s Clothing - How Vidar Hides in Plain Sight
|
para0x0dise
|
eee8a68511bd00ff98425cf9e9bd12873a5e742548fe7e2b72add7ff8dbabb24
|
advanced
|
|
|
31 Jan 2026
|
|
Use Babel to Deobfuscate JavaScript Malware
|
larsborn
|
1bc77b013c83b5b075c3d3c403da330178477843fc2d8326d90e495a61fbb01f
|
advanced
|
|
|
18 Jan 2026
|
|
Cutting corners against a Dridex downloader (part #2)
|
malcat
|
277089cb78a9c493cecd8f5fbe70df0577d4f9557fb8b55ff5f7c2505308ca3a
|
advanced
|
|
|
04 Jan 2026
|
|
Exploit, steganography and Delphi: unpacking DBatLoader (part #2)
|
malcat
|
3045902d7104e67ca88ca54360d9ef5bfe5bec8b575580bc28205ca67eeba96d
|
advanced
|
|
|
04 Jan 2026
|
|
Defeating ConfuserEx Anti-Analysis with Hooking
|
struppigel
|
0d7e7c6c1e02f7e5e5d0bf8f191e9d50636e71cabc2b4883d112b0f04da3d9f0
|
advanced
|
|
|
29 Dec 2025
|
|
Virut's File Infection, Part 3
|
struppigel
|
096607aa89ea6f17e5a815a67b94bc245ecbf18a87705e1dec2f1d85f8350e32
|
advanced
|
|
|
28 Dec 2025
|
|
Virut's Ntdll Hooking and Process Infection, Part 2
|
struppigel
|
096607aa89ea6f17e5a815a67b94bc245ecbf18a87705e1dec2f1d85f8350e32
|
advanced
|
|
|
28 Dec 2025
|
|
Virut, Unpacking a Polymorphic File Infector, Part I
|
struppigel
|
096607aa89ea6f17e5a815a67b94bc245ecbf18a87705e1dec2f1d85f8350e32
|
advanced
|
|
|
28 Dec 2025
|