Skip to content
View TheEnergyStory's full-sized avatar

Block or report TheEnergyStory

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Popular repositories Loading

  1. malware_analysis malware_analysis Public archive

    Malware analyses and helpful scripts

    C# 29 6

  2. ShellWindowComFolderCreate ShellWindowComFolderCreate Public

    COM-based folder creation via Shell Window process POC reverse-engineered from Turla’s Kazuar v3 loader.

    C 8 3

  3. PatchlessEtwAndAmsiBypass PatchlessEtwAndAmsiBypass Public

    Patchless ETW & AMSI bypass POC reverse-engineered from Turla’s Kazuar v3 loader.

    C 5 1

  4. LoadLibraryControlFlowRedirection LoadLibraryControlFlowRedirection Public

    LoadLibrary control flow redirection POC reverse-engineered from Turla’s Kazuar v3 loader.

    C 5

  5. pe_extract pe_extract Public

    Script to extract Windows PE files (EXE, DLL, SYS, unknown) from a given PE, byte blob, memory dump or a similar data structure.

    Python

  6. shellcode_to_exe shellcode_to_exe Public

    Script to create a Windows executable (x86/64) from a given shellcode file.

    Python