Click here to download all references as Bib-File.•
| 2021-06-03
            
            ⋅
            
            Twitter (@alberto__segura)
            ⋅ Tweet on decrypting FluBot strings FluBot | 
| 2021-04-19
            
            ⋅
            
            Twitter (@_alex_il_)
            ⋅ Tweet on QakBot's additional decryption mechanism QakBot | 
| 2021-04-01
            
            ⋅
            
            SentinelOne
            ⋅ Avaddon RaaS | Breaks Public Decryptor, Continues On Rampage Avaddon | 
| 2021-04-01
            
            ⋅
            
            Palo Alto Networks Unit 42
            ⋅ Wireshark Tutorial: Decrypting RDP Traffic | 
| 2021-03-29
            
            ⋅
            
            Hornetsecurity
            ⋅ Zloader email campaign using MHTML to download and decrypt XLS Zloader | 
| 2021-03-17
            
            ⋅
            
            The Record
            ⋅ Missed opportunity: Bug in LockBit ransomware allowed free decryptions LockBit | 
| 2021-03-11
            
            ⋅
            
            YouTube ( Malware_Analyzing_&_RE_Tips_Tricks)
            ⋅ Formbook Reversing - Part1 [Formbook .NET loader/injector analyzing, decrypting, unpacking, patching] Formbook | 
| 2021-02-22
            
            ⋅
            
            tccontre Blog
            ⋅ Gh0stRat Anti-Debugging: Nested SEH (try - catch) to Decrypt and Load its Payload Ghost RAT | 
| 2021-02-09
            
            ⋅ Avaddon ransomware: an in-depth analysis and decryption of infected systems Avaddon | 
| 2021-02-09
            
            ⋅
            
            Max Kersten's Blog
            ⋅ Ghidra script to decrypt strings in Amadey 1.09 Amadey | 
| 2021-02-06
            
            ⋅
            
            Medium mariohenkel
            ⋅ Decrypting AzoRult traffic for fun and profit Azorult | 
| 2021-02-04
            
            ⋅
            
            Bitdefender
            ⋅ Fonix Ransomware Decryptor FONIX | 
| 2021-01-11
            
            ⋅
            
            Bitdefender
            ⋅ Darkside Ransomware Decryption Tool DarkSide | 
| 2020-12-14
            
            ⋅
            
            Twitter (@lordx64)
            ⋅ Tweet on a one liner to decrypt SUNBURST backdoor SUNBURST | 
| 2020-12-13
            
            ⋅
            
            Medium (Cryptax)
            ⋅ Decrypting strings with a JEB script | 
| 2020-11-17
            
            ⋅
            
            Cisco Talos
            ⋅ Nibiru ransomware variant decryptor Nibiru | 
| 2020-09-18
            
            ⋅
            
            Github (gdbinit)
            ⋅ EvilQuest/ThiefQuest strings decrypt/deobfuscator EvilQuest | 
| 2020-09-10
            
            ⋅
            
            QuoSec GmbH
            ⋅ grap: Automating QakBot strings decryption QakBot | 
| 2020-09-10
            
            ⋅
            
            Medium mariohenkel
            ⋅ Decrypting NanoCore config and dump all plugins Nanocore RAT | 
| 2020-09-03
            
            ⋅
            
            Medium mariohenkel
            ⋅ Decrypting AgentTesla strings and config Agent Tesla |