March 2016

Petya key decoder

source code (Red Petya recovery) NEWS [05 July 2017] The author of the original Petya malware released his master key. Read more details here: WARNING: the key works only for the original Petya, not for the Petya-based malware known … Continue reading

Introduction to ADS – Alternate Data Streams

Sometimes during automated malware analysis in a sandbox (i.e. Cuckoo), we can get in the report the following information: “creating alternate data streams”. It is related with an interesting feature of NTFS file system,  that can be used for hidden … Continue reading

