AgentStack
meltedinhex avatar

meltedinhex

50 listings · 0 installs

Open-source publisher. Listings imported from github.com/meltedinhex — credited to the original author with their license.

↗ github.com/meltedinhex
50+ results
Self-run
SKILL

Deobfuscating Malicious Powershell

Deobfuscates malicious PowerShell by decoding -EncodedCommand, reversing string

0
17
Free
Self-run
SKILL

Analyzing Rust Malware Internals

Analyzes Rust-compiled malware by detecting the Rust toolchain signature, demangling

0
15
Free
Self-run
SKILL

Analyzing Api Call Traces

Analyzes API call traces from a sandbox or API monitor (JSON) to group calls by

0
14
Free
Self-run
SKILL

Building Config Extractors

Builds reusable malware configuration extractors by applying a declarative JSON spec

0
11
Free
Self-run
SKILL

Analyzing Rat Command And Control

Analyzes remote access trojan command-and-control by mapping the RAT command set,

0
15
Free
Self-run
SKILL

Analyzing Golang Malware Internals

Analyzes Go-compiled malware by recovering function names from the pclntab, detecting

0
13
Free
Self-run
SKILL

Capturing And Analyzing Malware Network Traffic

Captures and analyzes malware network traffic from a detonation: extracting C2

0
13
Free
Self-run
SKILL

Building A Threat Hunt Hypothesis

Frames a structured, testable threat-hunting hypothesis: grounding it in adversary

0
15
Free
Self-run
SKILL

Analyzing Rich Header And Compiler Artifacts

Analyzes the PE Rich header and related compiler artifacts to fingerprint the build

0
13
Free
Self-run
SKILL

Analyzing Mach O Binaries On Macos

Statically analyzes macOS Mach-O malware: parsing the header and load commands,

0
17
Free
Self-run
SKILL

Analyzing Malicious Office Macros

Analyzes malicious Office documents by extracting and reviewing VBA macros and

0
11
Free
Self-run
SKILL

Analyzing Malware In Memory With Volatility3

Analyzes a memory image with Volatility 3 to find malware: rogue processes,

0
15
Free
Self-run
SKILL

Dissecting Boot And Kernel Rootkits

Analyzes bootkit and rootkit samples by identifying boot-process tampering (MBR/VBR/

0
10
Free
Self-run
SKILL

Defanging And Sharing Iocs

Prepares indicators of compromise for safe sharing: defanging URLs, domains, IPs,

0
15
Free
Self-run
SKILL

Analyzing Malicious Vbscript And Wsf

Analyzes malicious VBScript, WSF, and HTA scripts: parsing WSF/HTA containers,

0
8
Free
Self-run
SKILL

Analyzing Malicious Lnk Files

Analyzes weaponized Windows shortcut (.lnk) files: parsing the shell link structure

0
14
Free
Self-run
SKILL

Analyzing Malicious Pdfs

Analyzes malicious PDF documents: parsing the object structure for JavaScript,

0
14
Free
Self-run
SKILL

Analyzing Malicious Onenote And Html Smuggling

Analyzes two modern delivery techniques: malicious OneNote (.one) attachments with

0
8
Free
Self-run
SKILL

Analyzing Webshells

Analyzes suspected webshells (PHP, ASPX/ASP, JSP) by detecting dynamic-execution

0
13
Free
Self-run
SKILL

Deobfuscating Malicious Javascript

Deobfuscates malicious JavaScript from droppers, web pages, and HTA/scriptlets:

0
17
Free
Self-run
SKILL

Bypassing Anti Vm And Sandbox Checks

Bypasses anti-VM and sandbox checks during analysis by locating the specific detection

0
13
Free
Self-run
SKILL

Detecting Process Injection In Memory

Detects process injection in a memory image by identifying private executable regions

0
17
Free
Self-run
SKILL

Defeating Control Flow Flattening

Defeats control-flow-flattening obfuscation by identifying the dispatcher/state-

0
15
Free
Self-run
SKILL

Analyzing Compiled Python Malware

Analyzes Python-based malware packaged as PyInstaller/py2exe executables by detecting

0
12
Free
Self-run
SKILL

Building Zeek Analytics For Hunting

Builds Zeek-based network hunting analytics by writing scripts and analyzing Zeek logs

0
11
Free
Self-run
SKILL

Collecting Volatile Evidence From A Suspect Host

Collects volatile evidence from a potentially compromised host in correct order of

0
15
Free
Self-run
SKILL

Building A Sample Management Workflow

Establishes a disciplined malware sample repository: content-addressed storage by

0
13
Free
Self-run
SKILL

Debugging Malware With X64dbg

Uses x64dbg to dynamically debug Windows malware: setting strategic breakpoints

0
17
Free
Self-run
SKILL

Dumping And Rebuilding A Pe From Memory

Rebuilds a usable PE file from a memory dump by fixing the section alignment

0
15
Free
Self-run
SKILL

Analyzing Banking Trojan Webinjects

Analyzes banking trojan webinject configurations to extract targeted institutions,

0
17
Free
Self-run
SKILL

Analyzing Loaders And Droppers

Analyzes loader and dropper samples by identifying staging behavior — embedded or

0
11
Free
Self-run
SKILL

Analyzing Position Independent Code

Analyzes position-independent code and shellcode by identifying GetPC/PEB-walk

0
14
Free
Self-run
SKILL

Analyzing Android Dex Malware

Reverses Android malware: unpacking APKs, decompiling DEX bytecode to readable

0
14
Free
Self-run
SKILL

Analyzing Infostealer Credential Theft

Analyzes infostealer samples by mapping the browser, credential store, wallet, and

0
14
Free
Self-run
SKILL

Analyzing Java Jar Malware

Analyzes Java/JAR malware (such as Adwind/jRAT-class cross-platform RATs) by

0
14
Free
Self-run
SKILL

Analyzing Dotnet Malware Internals

Reverses .NET/managed malware: decompiling MSIL back to C#, defeating common

0
18
Free
Self-run
SKILL

Analyzing Pe Imports And Exports

Analyzes a PE file''s import and export tables to infer capability: mapping imported

0
16
Free
Self-run
SKILL

Analyzing Ransomware Encryption Behavior

Analyzes how a ransomware sample encrypts files: identifying the crypto scheme

0
11
Free
Self-run
SKILL

Defeating String And Api Obfuscation

Recovers obfuscated strings and resolves dynamically loaded APIs in malware:

0
13
Free
Self-run
SKILL

Analyzing Wiper Malware

Analyzes destructive wiper malware by identifying raw-disk and MBR/VBR overwrite

0
14
Free
Self-run
SKILL

Diffing Malware Samples To Find Changes

Compares two related malware samples to surface what changed between variants using

0
13
Free
Self-run
SKILL

Analyzing Malicious Iso And Container Files

Analyzes malicious ISO, IMG, VHD, and similar container files used to smuggle payloads

0
15
Free
Self-run
SKILL

Decrypting Embedded Configuration

Decrypts statically embedded malware configuration blobs by trying common schemes

0
14
Free
Self-run
SKILL

Detecting Sandbox Evasion Behavior

Detects sandbox and analysis evasion techniques in a sample by scanning static

0
15
Free
Self-run
SKILL

Analyzing Cryptominer Malware

Analyzes cryptojacking/coinminer malware by extracting mining pool endpoints

0
13
Free
Self-run
SKILL

Automating Analysis With R2pipe

Automates radare2/rizin analysis through r2pipe to script function enumeration, string

0
18
Free
Self-run
SKILL

Analyzing Windows Driver Malware

Analyzes malicious and vulnerable Windows kernel drivers (.sys) by parsing the PE for

0
16
Free
Self-run
SKILL

Analyzing Excel 4 Macro Malware

Analyzes legacy Excel 4.0 (XLM) macro malware by parsing extracted macro-sheet

0
14
Free
Self-run
SKILL

Analyzing Authenticode Signatures

Analyzes Windows Authenticode signatures on PE files: checking for a signature,

0
14
Free
Self-run
SKILL

Analyzing Elf Binaries On Linux

Statically analyzes Linux ELF malware: ELF header and sections, dynamic symbols

0
10
Free