At a Glance: We look at signs that this sample is packed and how we can see that it uses RunPE to inject the packed code into its own process. Every malware analyst encounters packed samples - and you can't analyze what you can't

Malware Analysis Writing X64dbg Unpacking Scripts -

We look at signs that this sample is packed and how we can see that it uses RunPE to inject the packed code into its own process. Every malware analyst encounters packed samples - and you can't analyze what you can't The newest ROKRAT variant injects its shellcode into cmd.exe, which will in turn decrypt a PE image.

Important details found

  • We look at signs that this sample is packed and how we can see that it uses RunPE to inject the packed code into its own process.
  • Every malware analyst encounters packed samples - and you can't analyze what you can't
  • The newest ROKRAT variant injects its shellcode into cmd.exe, which will in turn decrypt a PE image.

Why this topic is useful

This topic is useful when readers need a quick overview first, then want to move into supporting details and related references.

Sponsored

Frequently Asked Questions

Why are related topics included?

Related topics help readers compare nearby references and understand the broader subject.

What is this page about?

This page summarizes Malware Analysis Writing X64dbg Unpacking Scripts and connects it with related entries, references, and supporting context.

Is the information always complete?

Not always. Some topics may need verification from official or primary sources.

Visual References

Malware Analysis - Writing x64dbg unpacking scripts
Unpacking and Extracting TrickBot Malware Configuration With x64dbg and Python
Malware Analysis Tutorial: Unpacking Any Packed Sample with x64dbg
Malware Analysis - Unpacking RunPE Loyeetro Trojan
How to Extract Shellcode Using x64dbg (Malware Analysis)
Malware Analysis - ROKRAT Unpacking from Injected Shellcode
PMA 121: Unpacking with OllyDbg and pestudio
PMA 121 Unpacking with OllyDbg
Automated Unpacking  (Malware Analysis & Reverse Engineering)
How Malware Hides from Antivirus: Packer Analysis with x32dbg and Binary Ninja
Sponsored
View Full Details
Malware Analysis - Writing x64dbg unpacking scripts

Malware Analysis - Writing x64dbg unpacking scripts

Read more details and related context about Malware Analysis - Writing x64dbg unpacking scripts.

Unpacking and Extracting TrickBot Malware Configuration With x64dbg and Python

Unpacking and Extracting TrickBot Malware Configuration With x64dbg and Python

Read more details and related context about Unpacking and Extracting TrickBot Malware Configuration With x64dbg and Python.

Malware Analysis Tutorial: Unpacking Any Packed Sample with x64dbg

Malware Analysis Tutorial: Unpacking Any Packed Sample with x64dbg

Every malware analyst encounters packed samples - and you can't analyze what you can't

Malware Analysis - Unpacking RunPE Loyeetro Trojan

Malware Analysis - Unpacking RunPE Loyeetro Trojan

We look at signs that this sample is packed and how we can see that it uses RunPE to inject the packed code into its own process.

How to Extract Shellcode Using x64dbg (Malware Analysis)

How to Extract Shellcode Using x64dbg (Malware Analysis)

Build real confidence analyzing malware. Join the waitlist. Get my

Malware Analysis - ROKRAT Unpacking from Injected Shellcode

Malware Analysis - ROKRAT Unpacking from Injected Shellcode

The newest ROKRAT variant injects its shellcode into cmd.exe, which will in turn decrypt a PE image. We debug the injected code ...

PMA 121: Unpacking with OllyDbg and pestudio

PMA 121: Unpacking with OllyDbg and pestudio

Read more details and related context about PMA 121: Unpacking with OllyDbg and pestudio.

PMA 121 Unpacking with OllyDbg

PMA 121 Unpacking with OllyDbg

Read more details and related context about PMA 121 Unpacking with OllyDbg.

Automated Unpacking  (Malware Analysis & Reverse Engineering)

Automated Unpacking (Malware Analysis & Reverse Engineering)

Build real confidence analyzing malware. Join the waitlist. Get my

How Malware Hides from Antivirus: Packer Analysis with x32dbg and Binary Ninja

How Malware Hides from Antivirus: Packer Analysis with x32dbg and Binary Ninja

Read more details and related context about How Malware Hides from Antivirus: Packer Analysis with x32dbg and Binary Ninja.