Blog on Malware Research and Reverse Engineering by @push_pnx.

Joined September 2014
13 Photos and videos
[blog post] MalpediaFLOSSed danielplohmann.github.io/blo…
2
17
43
28,932
[blog post] Upgraded MCRIT Feature: IDA Plugin danielplohmann.github.io/blo…
8
34
6,153
[blog post] Knowledge Fragment: Hardening Win10 x64 on VirtualBox for Malware Analysis danielplohmann.github.io/blo…
1
13
50
10,100
[blog post] MCRIT: The MinHash-based Code Relationship & Investigation Toolkit danielplohmann.github.io/blo…
5
17
5,669
10 Jul 2020
[blog post] Casting Sandbox Necromancy on DADSTACHE danielplohmann.github.io/blo…
7
16
22 May 2018
[blog post] I updated "The Big Zeus Family Similarity Showdown", now with almost twice the samples and 4 new zeus-like families! byte-atlas.blogspot.com/2018…
7
7
18 Apr 2018
[blog post] Upgrading ApiScout: Introducing ApiVectors. byte-atlas.blogspot.de/2018/…
1
10
19
14 Jan 2018
[blog post] The Big Zeus Family Similarity Showdown. byte-atlas.blogspot.de/2018/…
3
27
32
16 May 2017
[blog post] Quick analysis / identification of the "link" function between the Lazarus and WannaCry sample: byte-atlas.blogspot.com/2017…

2
4
10 Apr 2017
[blog post / tool] ApiScout: Painless Windows API information recovery. byte-atlas.blogspot.com/2017…
50
63
[blog post] Hardening Win7 x64 on VirtualBox for Malware Analysis byte-atlas.blogspot.com/2017…
3
147
240
18 Aug 2015
[blog post] Fobber Inline String Decryption byte-atlas.blogspot.com/2015…
15
24
18 Aug 2015
[blog post] Unwrapping Fobber byte-atlas.blogspot.com/2015…
13
16
15 Apr 2015
[blog post] Bruteforcing Andromeda C&C configurations. byte-atlas.blogspot.de/2015/…
1
21
14
Byte Atlas retweeted
Regex to check you web server access logs for CVE-2014-6271 Shell Shock exploitation (v2 egrep compatible) \(\)\s\{.*;\s*\};
3
13
9
25 Sep 2014
cursory static analysis of DingleElite DDoS bot: zerobin.net/?4126dd143e52126…

1
25 Sep 2014
up and running.