Tips For Writing a .NET Static Config Extractor for Malware [ Reverse Engineering AMA ] @OALABS
Tips For Writing a .NET Static Config Extractor for Malware [ Reverse Engineering AMA ]  @OALABS
Uploaded December 2022 | Updated September 2026, 2 weeks ago
What are some tips for dealing with static config extraction of .NET malware?

--

Big thanks to all the reverse engineers who helped us put this together!

Rattle (Jesko)
twitter.com/huettenhain
github.com/binref/refinery

Jordan (psifertex)
twitter.com/psifertex
https://binary.ninja/

Karsten
twitter.com/struppigel
youtube.com/c/MalwareAnalysisForHedgehogs

Drakonia
twitter.com/dr4k0nia
dr4k0nia.github.io

C3rb3ru5
twitter.com/c3rb3ru5d3d53c
c3rb3ru5d3d53c.github.io

Josh
twitter.com/jershmagersh
pwnage.io

Dodo
twitter.com/dodo_sec
github.com/dodo-sec

Washi
twitter.com/washi_dev
https://washi.dev/

-----
OALABS PATREON
patreon.com/oalabs

OALABS DISCORD
discord.gg/6h5Bh5AMDU

Twitch
twitch.tv/oalabslive

OALABS GITHUB
github.com/OALabs

UNPACME - AUTOMATED MALWARE UNPACKING
unpac.me/#
-----
Tips For Writing a .NET Static Config Extractor for Malware [ Reverse Engineering AMA ]Reverse Engineering C++ Malware With IDA ProIDA Pro Plugins For Malware Reverse EngineeringDebugging shellcode using BlobRunner and IDA ProIDA Pro Malware Analysis TipsSandbox Tricks For Faster Reverse EngineeringWhy Is The PE Entry Point Not The Same As Main SEH and The _security_init_cookie [Patreon Unlocked]What Is The Most Interesting Malware From 2022 [ Reverse Engineering AMA ]IDA Free Reverse Engineering - Step-by-Step DLL AnalysisIDA Free Reverse Engineering - Step-by-Step EXE AnalysisBotleggers Exposed - Analysis of The Conti Leaks MalwareAnalyze JavaScript and VBScript Malware With x64dbg Debugger and API Hooking
OALabs |

Tips For Writing a .NET Static Config Extractor for Malware [ Reverse Engineering AMA ]

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER