A repo that contains scripts written to automate the de-obfuscation of the AutoIT malware that wraps a Remcos RAT agent, and to automate the extraction and decryption of Remcos configuration.
-
Updated
Jan 2, 2022 - Python
A repo that contains scripts written to automate the de-obfuscation of the AutoIT malware that wraps a Remcos RAT agent, and to automate the extraction and decryption of Remcos configuration.
Simple and typical Blue Team malware analysis and detection tools from Michał Sołtysik - e.g. perfect to catch a keylogger exfiltrating data and deleting its traces.
Cybersecurity content (YouTube videos) | (1) How Web Protocol Weaknesses Enable Layer 7 DoS Attacks | (2) Deep packet inspection analyses - why the typical approach is not enough | (3) Deep Packet Inspection Analysis - Examining One Packet Killers | (4) Remcos RAT threat analysis on Windows including IEC 60870-5-104 traffic
To associate your repository with the remcos topic, visit your repo's landing page and select "manage topics."