Skip links

  • Skip to primary navigation
  • Skip to content
  • Skip to footer
n1ghtw0lf
  • Malware Analysis
  • Binary Exploitation
  • CTF Writeups
  • Tutorials
  • All Categories
    Abdallah Elshinbary

    Abdallah Elshinbary

    Malware Analysis & Reverse Engineering Adventures.

    • Email
    • Twitter
    • LinkedIn
    • GitHub
    • Buy Me a Coffee

    Recent posts

    Malware Analysis

    Deep Analysis of GCleaner

    GCleaner is a Pay-Per-Install (PPI) loader first discovered in early 2019, it has been used to deploy other malicious...

    15 Jul 2023

    10 minute read

    Tutorials

    Dotnet String Decryptor

    Welcome back! This is a short blog about reverse engineering dotnet malware. When working with dotnet malware samples...

    15 Jun 2023

    5 minute read

    Tutorials

    Writing x64dbg plugins

    In the previous post we talked about writing x64dbg scripts, now let's dive deeper and write our own plugin to do the...

    17 Dec 2022

    6 minute read

    Tutorials

    Writing x64dbg scripts

    x64dbg is an open-source x64/x32 debugger for windows, it has dozens of features that make the life of reverse engine...

    16 Dec 2022

    5 minute read

    Tutorials

    YARA for config extraction

    YARA is a tool aimed at helping malware researchers to identify and classify malware samples. It's considered...

    08 Aug 2022

    8 minute read

    Tutorials

    Qiling For Malware Analysis: Part 2

    In the first part we talked about the basics of Qiling, you can find it here, Now it's time for some real...

    25 Jul 2020

    5 minute read

    Tutorials

    Qiling For Malware Analysis: Part 1

    Qiling is an advanced binary emulation framework written in python and based on Unicorn...

    25 Jul 2020

    4 minute read

    Malware Analysis

    Deep Analysis of QBot Banking Trojan

    Qbot is a modular information stealer also known as Qakbot. It has been active for years since 2007. It has...

    15 Jul 2020

    11 minute read

    • Previous
    • 1
    • 2
    • 3
    • …
    • 8
    • Next
    • Follow:
    • Feed
    © 2024 Abdallah Elshinbary. Powered by Jekyll & Minimal Mistakes.