Josh Stroschein
Josh Stroschein
malware-samples
Malware samples, analysis exercises and other interesting resources.
learning-malware-analysis
This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be compiled and used for learning purposes, without having to wor...
learning-reverse-engineering
This repository contains sample programs written primarily in C and C++ for learning native code reverse engineering.
graph-maldoc-similar-images
A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster visually similar images together. The script computes the Average...
XOR-Decode-Strings-IDA-Plugin
This IDA Python plugin is intended to get you started creating IDA Plugins with Python, recognize the importance of deobfuscating strings and work on translating assembly to a higher-level language (i...
sclauncher
A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files from shellcode.
search-abuse.ch
Python3 script that can download samples directly from Abuse.CH or via submitted URLs
subcrawl
SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data with optional output modules, such as Elastic.
subparse
Modular malware analysis artifact collection and correlation framework