Relocating BaseAddress Agnostic Memory Dumps
• Raashid Bhat
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Python - T1059.006 |
Common Information
Type | Value |
---|---|
UUID | bed146ba-39d9-4fb1-95a3-77e430e04876 |
Fingerprint | cf37c4312f7bc1b4 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Nov. 26, 2019, midnight |
Added to db | Aug. 31, 2024, 10:56 a.m. |
Last updated | Nov. 17, 2024, 11:40 p.m. |
Headline | Relocating BaseAddress Agnostic Memory Dumps |
Title | Relocating BaseAddress Agnostic Memory Dumps • Raashid Bhat |
Detected Hints/Tags/Attributes | 21/1/9 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://int0xcc.svbtle.com/relocating-baseaddress-agnostic-memory-dumps |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 429 | ✔ | Raashid Bhat | https://int0xcc.svbtle.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 48 | pefile.pe |
|
Details | Domain | 13 | section.name |
|
Details | Domain | 4128 | github.com |
|
Details | File | 1 | args.inf |
|
Details | File | 13 | pe.opt |
|
Details | File | 3 | ional_header.dat |
|
Details | File | 1 | opthdr.dat |
|
Details | Github username | 35 | hasherezade |
|
Details | Url | 1 | https://github.com/hasherezade/libpeconv/tree/master/pe_unmapper |