Back to Playbooks
CTF
ctf-malware-pe-dotnet
CTF PE and .NET malware analysis. PE static triage with peframe/pestudio, sandbox evasion detection (VM artifacts, debugger checks, timing), .NET assembly analysis with dnSpy/ILSpy, LimeRAT C2 extraction via AES-256-ECB with MD5 key derivation, PyInstaller extraction with pyinstxtractor, PyArmor unp
Slug
ctf-malware-pe-dotnet
Category
CTF
Run Playbook
/gitest ctf-malware-pe-dotnet