waliedassar

Waliedassar's Pastebin

Egypt    112,518 107,418 10 years ago
Name / Title Added Expires Hits Comments Syntax  
BATTC.SYS!BatteryClassIoctl Kernel Memory Disclosure Oct 23rd, 2021 Never 1,007 C -
nt!ObpCreateSymbolicLinkName Race Condition Write-Beyond-Boundary Oct 14th, 2021 Never 2,455 C -
Reversed ObpCreateSymbolicLinkName Oct 14th, 2021 Never 1,086 C -
iorate.sys DoS May 30th, 2021 Never 1,594 C -
AllocAtHighestUserAddressBuffer May 14th, 2021 Never 768 C -
Reversed nt!PiControlQueryConflictList May 2nd, 2021 Never 1,163 C -
Generated Custom .LNK File Oct 13th, 2016 Never 1,347 VBScript -
UNC Path Bug Oct 10th, 2016 Never 268 PowerShell -
Bit9 Bug 0 Sep 26th, 2016 Never 427 C -
Middle Eastern Attacks May 18th, 2015 Never 390 None -
FindRefCLSIDs.py May 3rd, 2015 Never 373 Python -
DumpRTFObjects.py May 3rd, 2015 Never 365 Python -
CVE-2012-0158 Control Words May 3rd, 2015 Never 541 C -
MagedDecrypter May 3rd, 2015 Never 422 Python -
HexToFile.Py Apr 27th, 2015 Never 344 Python -
Decode_njRat_3DES Apr 25th, 2015 Never 407 Python -
Decoder For CyberGate XX-XX-XX-XX Resource Apr 24th, 2015 Never 377 Python -
RunPE Embedded Executable Extractor Apr 22nd, 2015 Never 483 Python -
Cyber Attack 6 njRat Source Code Apr 18th, 2015 Never 613 C# -
Decode_njRat_GZipVersion Apr 18th, 2015 Never 360 Python -
JS_Malicious_Invoice Apr 18th, 2015 Never 561 JavaScript -
cIR1R2_Analytics Apr 14th, 2015 Never 322 XML -
Flushupdate.com /etc/group Apr 8th, 2015 Never 456 C -
Flushupdate.com /etc/hosts Apr 8th, 2015 Never 560 C -
Flushupdate.com /etc/passwd Apr 8th, 2015 Never 610 C -
advtravel.info Apr 8th, 2015 Never 395 C -
WQL VirtualBox Detection Apr 4th, 2015 Never 2,254 VBScript -
GetWriteWatch Trick Jun 30th, 2014 Never 433 C -
PspProcessOpen Nov 8th, 2013 Never 698 C -
INT 2E / Anti-Tracing Trick Oct 24th, 2013 Never 577 C -
PspSetContext Nested Task EFlag Anti-Tracing Trick Oct 19th, 2013 Never 611 C -
NtSystemDebugControl + KdPitchDebugger Jul 3rd, 2013 Never 1,735 C -
KdUpdateTimeSlipEvent KernelDebugger Trick Jul 2nd, 2013 Never 354 C -
NtGlobalFlag As Anti-Debug Trick Jun 4th, 2013 Never 632 C -
PspSetContext Anti-Tracing Trick May 9th, 2013 Never 578 C -
InstrumentationCallback Anti-Debug+Redirection Apr 19th, 2013 Never 1,918 C -
Kernel VA Leak Apr 18th, 2013 Never 535 C -
Anti-Resource Editing Apr 3rd, 2013 Never 775 None -
Page_0x00000000 Anti-Tracing Trick Mar 12th, 2013 Never 456 C -
64-Bit ZwQueryObject (Detect Debuggers) Feb 27th, 2013 Never 571 C -
Bypass Non-Killable Process Feb 12th, 2013 Never 542 C -
ZwClose As Anti-Debug Trick Feb 9th, 2013 Never 843 C -
ProcessIoPriority Bug (BSOD/Non-Killable Process) Feb 6th, 2013 Never 2,187 C -
ThreadWow64Context Feb 2nd, 2013 Never 282 C -
RaiseException(0x4000001f) Anti-Olly Trick Jan 30th, 2013 Never 524 C -
Template Wow64Log.dll Jan 25th, 2013 Never 568 C -
Injecting 64Bit Dll Into 32Bit Process Jan 25th, 2013 Never 1,162 C -
Some Anti-Attaching Candidate Functions Jan 25th, 2013 Never 401 C -
Kernel Bug #0 ThreadIOPriority Jan 23rd, 2013 Never 666 C -
ProcessBasicInformation vs. New Flags Jan 22nd, 2013 Never 597 C -
ProcessExecuteFlags Jan 21st, 2013 Never 381 None -
LdrpIsImageSEHValidationCompatible Jan 21st, 2013 Never 378 None -
ProcessInstrumentationCallback Jan 20th, 2013 Never 453 C -
Wow64SharedInformation vs. Shellcode Jan 19th, 2013 Never 537 C -
Enumerate Loaded Modules (64-bit) Jan 19th, 2013 Never 216 C -
Get Main ThreadId Of A Process Jan 19th, 2013 Never 255 C -
VmTopDown Jan 19th, 2013 Never 484 C -
SystemFunction0035 Jan 14th, 2013 Never 294 C -
Call64, Issue 64-bit System Calls Jan 12th, 2013 Never 825 C -
Redirect Execution Jan 6th, 2013 Never 474 C -
"Prefix+PUSHFD" Anti-Tracing Trick Jan 4th, 2013 Never 358 C -
"REP: PUSHFD" Anti-Tracing Trick Jan 4th, 2013 Never 414 C -
KERNEL: Creation of Thread Environment Block (TEB) Dec 31st, 2012 Never 1,708 None -
Wow64-Specific Anti-Debug Trick Dec 26th, 2012 Never 1,159 C -
Anti-ChildDebugging Dec 16th, 2012 Never 483 C -
ZwQueryInformationThread(ThreadAmILastThread) Dec 14th, 2012 Never 365 C -
ZwQueryInformationThread(ThreadLastSystemCall) Dec 14th, 2012 Never 637 C -
ZwQueryInformationThread(ThreadTebInformation) Dec 14th, 2012 Never 513 C -
SystemComPlusPackage Dec 8th, 2012 Never 627 C -
SuppressDllMains --> SkipThreadAttach Dec 7th, 2012 Never 638 C -
DebugActiveProcess(ParentProcessPid) Trick Dec 2nd, 2012 Never 283 C -
DebuggerIs32Bit Dec 1st, 2012 Never 396 None -
TEB.SuppressDebugMsg Nov 22nd, 2012 Never 668 C -
OllyDbg v1.10 LoadDll.hFile Trick Nov 21st, 2012 Never 354 C -
ZwCreateThreadEx/HiddenFromDebugger Nov 21st, 2012 Never 1,911 C -
OllyDbg RaiseException Anti-Debug Trick Nov 7th, 2012 Never 931 C -
VirtualBox HardDiskInfo Trick Nov 5th, 2012 Never 213 C -
Reversed "BaseCreateStack" Nov 5th, 2012 Never 442 C -
VirtualBox CPUID-SEP Trick Nov 5th, 2012 Never 792 C -
Virtual PC 2007 DR7 Trick Oct 29th, 2012 Never 482 C -
32_Bit --> 64_bit PE Header Oct 24th, 2012 Never 265 C -
SizeOfStackReserve As Anti-Attach Trick Oct 24th, 2012 Never 1,079 C -
Trigger STATUS_GUARD_VIOLATION Oct 22nd, 2012 Never 262 C -
Detect XP In VirtualPC 2007 (Resume Flag Trick) Oct 21st, 2012 Never 1,784 C -
VirtualBox VS. Hardware Breakpoints Oct 21st, 2012 Never 324 C -
TEB As Anti-Memory Breakpoints Oct 20th, 2012 Never 1,047 C -
Extract EntryPoint, ImageBase, And SizeOfImage Oct 18th, 2012 Never 344 C -
VBoxSharedFolderFS Oct 18th, 2012 Never 1,037 C -
ReadProcessMemory As Anti-Memory Breakpoints Oct 18th, 2012 Never 1,388 C -
DebugActiveProcess(-1) Oct 15th, 2012 Never 327 C -
Processors' Strings Oct 14th, 2012 Never 186 C -
Resume Flag Support Oct 14th, 2012 Never 185 C -
lpMinimumApplicationAddress & lpMaximumApplicationAddress Oct 13th, 2012 Never 386 C -
VirtualPC CPUID TRICK Oct 8th, 2012 Never 2,928 C -
Detect Hypervisor Oct 8th, 2012 Never 4,506 C -
VirtualPC Reset Trick Oct 8th, 2012 Never 1,909 C -
VirtualPC 0x0F 0x3F Combinations Oct 8th, 2012 Never 1,333 C -
Detect VirtualPC (The "x0Fx3F" TRICK) Oct 8th, 2012 Never 1,488 C -
Detect VirtualBox (Cadmus Mac Address TRICK) Oct 7th, 2012 Never 2,707 C -
Detect VirtualBox (TYPE 0x7E TRICK) Oct 7th, 2012 Never 1,206 C -