.NET Unpacking part 2. ;)
We unpack four layers of NetWiredRC backdoor using 7-Zip, VisualStudio and DnSpy.
Malware analysis courses: https://malwareanalysis-for-hedgehogs...
Buy me a coffee: https://ko-fi.com/struppigel
Follow me on Twitter: / struppigel
7-Zip: http://www.7-zip.org/
DnSpy: https://github.com/0xd4d/dnSpy/releases
VisualStudio Community: https://www.microsoft.com/en-us/downl...
PortexAnalyzer: https://github.com/katjahahn/PortEx/t...
PEStudio: https://winitor.com/
Unpacking script 2. stage: http://pastebin.com/WaKe5CjY
Sample: https://www.hybrid-analysis.com/sampl...