GITEST
Back to Playbooks
CTF

ctf-malware-pe-dotnet

CTF PE and .NET malware analysis. PE static triage with peframe/pestudio, sandbox evasion detection (VM artifacts, debugger checks, timing), .NET assembly analysis with dnSpy/ILSpy, LimeRAT C2 extraction via AES-256-ECB with MD5 key derivation, PyInstaller extraction with pyinstxtractor, PyArmor unp

Slug

ctf-malware-pe-dotnet

Category

CTF

Run Playbook

/gitest ctf-malware-pe-dotnet