corpus.blog
Most cited
Talked about
Blogs
41554 blogs · [ { "id": "01a0879e-d524-72b0-9577-2f11496dba71", "title": "Testing local LLMs: Qwen 3.5 vs. PowerShell Obfuscation", "url": "https://malfind.com/posts/2026-04-03-testing-local-llms-qwen-35-vs-powershell-obfuscation/", "published_at": "2026-04-02T16:00:00+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114a5c3c2a", "title": "About Malfind Labs", "url": "https://malfind.com/about/", "published_at": "2024-01-15T10:00:00+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114ae66e1c", "title": "Malware triage in 30 minutes or how to get infected when browsing google", "url": "https://malfind.com/posts/2022-12-01-malware-triage-in-30-minutes-or-how-to-get-infected-when-browsing-google/", "published_at": "2022-12-01T13:21:07+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114bca6185", "title": "From the archive #2: Ursnif dropper deobfuscation", "url": "https://malfind.com/posts/2021-11-25-from-the-archive-2-ursnif-dropper-deobfuscation/", "published_at": "2021-11-25T05:47:11+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114bd48034", "title": "From the archive #1: OSTap downloader deobfuscation and analysis", "url": "https://malfind.com/posts/2021-11-24-from-the-archive-1-ostap-dropper-deobfuscation-and-analysis/", "published_at": "2021-11-24T07:56:37+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114befbc7c", "title": "Revisiting Code Injection #1. Classic DLL injection", "url": "https://malfind.com/posts/2020-04-20-revisiting-code-injection-1-classic-dll-injection/", "published_at": "2020-04-20T14:13:19+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114c8a171f", "title": "Tips & tricks #1: MITM proxy with fakenet and realnet mode", "url": "https://malfind.com/posts/2019-06-02-tips-tricks-1-mitm-proxy-with-fakenet-and-realnet-mode/", "published_at": "2019-06-02T08:26:36+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114caa9958", "title": "Extracting IP and port from a meterpreter payload", "url": "https://malfind.com/posts/2019-05-21-extracting-ip-and-port-from-meterpreter-powershell-payload/", "published_at": "2019-05-21T20:48:15+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114d420002", "title": "How I accidentally found a clickjacking feature in Facebook", "url": "https://malfind.com/posts/2018-12-21-how-i-accidentaly-found-clickjacking-in-facebook/", "published_at": "2018-12-21T14:00:37+00:00" }, { "id": "01a0879e-d524-72b0-9577-2f114d46df28", "title": "Deobfuscating Emotet's powershell payload", "url": "https://malfind.com/posts/2018-07-23-deobfuscating-emotets-powershell-payload/", "published_at": "2018-07-23T18:37:32+00:00" } ] posts
Claim your blog
Back to malfind.com
Blog · corpus.blog/blogs/malfind.com/posts
malfind.com
malfind.com
2026
Testing local LLMs: Qwen 3.5 vs. PowerShell Obfuscation
original ↗
2 Apr 2026
2024
About Malfind Labs
original ↗
15 Jan 2024
2022
Malware triage in 30 minutes or how to get infected when browsing google
original ↗
1 Dec 2022
2021
From the archive #2: Ursnif dropper deobfuscation
original ↗
25 Nov 2021
From the archive #1: OSTap downloader deobfuscation and analysis
original ↗
24 Nov 2021
2020
Revisiting Code Injection #1. Classic DLL injection
original ↗
20 Apr 2020
2019
Tips & tricks #1: MITM proxy with fakenet and realnet mode
original ↗
2 Jun 2019
Extracting IP and port from a meterpreter payload
original ↗
21 May 2019
2018
How I accidentally found a clickjacking feature in Facebook
original ↗
21 Dec 2018
Deobfuscating Emotet's powershell payload
original ↗
23 Jul 2018