This is your work, valued
Security Researcher specializing in .NET malware analysis and tooling
NixImports. A .NET malware loader, using API-Hashing to evade static analysis
209Origami. Packer compressing .net assemblies, (ab)using the PE format for data storage
176XorStringsNET. Easy XOR string encryption for NET based binaries
138MurkyStrings. A string obfuscator for .NET apps, built to evade static string analysis.
108Unscrambler. Universal unpacker and fixer for a number of modded ConfuserEx protections
105Simple-Costura-Decompressor. Simple tool to extract and decompress embedded resources processed by Fody Costura
80tooling-playground. A collection of small scripts and tools for deobfuscation and malware analysis.
67FlatUI-Midnight. FlatUI Dark Reskin for Winforms .NET 4.0
60Greenline. Unpacker and Config Extractor for managed Redline Stealer payloads
39yara-rules. A collection of my yara rules
34de4dot_gui. Simple GUI app to simplify manual string decryption with de4dot
25NoChallenge. A tool to automatically defeat .NET crackmes based on string equality comparisons
18DontPoisonMySource. Simple tool to check visual studio project files for Exec, PreBuildEvent and PostBuildEvent
12simple-string-encryption. Simple website to automatically generate string encryption/decryption routines for C#
10LagSwitch. C#
9AHK-Dumper. Dumper for compiled AutoHotKey Scripts
8dr4k0nia.github.io. SCSS
5de4dot. .NET deobfuscator and unpacker.
4AsmResolver. A library for editing PE files with full .NET metadata support
2autoit-extractor. AutoIt Extractor transferred to GitHub
2Configuration_extractors. Python
1pycdc. C++ python bytecode disassembler and decompiler
1