Skip links

  • Skip to primary navigation
  • Skip to content
  • Skip to footer
Alon Alush
  • Unpacking
  • AV Evasion
  • Injection
    Alon Alush

    Alon Alush

    Simple blog that documents my reverse engineering / malware analysis endeavors on Windows.

    • Email
    • Discord
    • GitHub

    Recent posts

    Scraping

    How to use DiscordChatExporter to scrape / export Discord servers and DMs

    Easily scraping Discord messages with the help of DiscordChatExporter, an open-source tool

    24 May 2025

    2 minute read

    AI world

    Shapes, Inc got mass-terminated by Discord!

    Shapes, Inc, a Discord hub for creating and talking to customized AI chatbots, just got terminated; and it doesn't lo...

    03 May 2025

    1 minute read

    Unpacking

    The breach of VMProtect: 2 major incidents

    Discussing the breaches of VMProtect's source code that emerged in 2023

    26 Apr 2025

    1 minute read

    PE File Format

    PE file format: DOS Header

    Explaining the DOS header in Windows executable formats

    22 Apr 2025

    5 minute read

    PE File Format

    PE file format: Import Address Table

    Explaining in detail the Import Address Table (IAT) structure in Portable Executable (PE) file

    21 Apr 2025

    1 minute read

    Malware Analysis

    Decoding a Pyinstaller ransomware sample

    Decoding a ransomware sample made in Python, step by step

    20 Apr 2025

    5 minute read

    Injection

    Using code caves to inject custom shellcode

    Learn how to use code caves to inject custom code into a .exe file

    19 Apr 2025

    10 minute read

    Unpacking

    Unpacking UPX (MinGW example)

    Simple example on how to modify UPX-packed files

    18 Apr 2025

    2 minute read

    • Previous
    • 1
    • 2
    • Next
    • Follow:
    • Feed
    © 2025 Alon Alush. Powered by Jekyll & Minimal Mistakes.