Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Package proposal: blobrunner64.vm #826

Closed
mike-hunhoff opened this issue Jan 11, 2024 · 4 comments
Closed

Package proposal: blobrunner64.vm #826

mike-hunhoff opened this issue Jan 11, 2024 · 4 comments
Assignees
Labels
🌀 FLARE-VM A package or feature to be used by FLARE-VM 🆕 package New package request/idea/PR

Comments

@mike-hunhoff
Copy link

mike-hunhoff commented Jan 11, 2024

Package Name

blobrunner64

Tool Name

blobrunner64

Package type

ZIP_EXE

Is the tool a console application?

true

Tool's version number

0.0.5

Category

Utilities

Tool's authors

OALabs

Tool's description

BlobRunner is a simple tool to quickly debug shellcode extracted during malware analysis.

Download URL

https://github.com/OALabs/BlobRunner/releases/download/v0.0.5/blobrunner64.zip

Download SHA256 Hash

325e3e26ccdce53cdd8b6665c7ed7d1765fc1c56cd088a5b4433593682c9f503

Dependencies

No response

Why is this tool a good addition?

This quote from BlobRunner's README says it all:

BlobRunner is a simple tool to quickly debug shellcode extracted during malware analysis. BlobRunner allocates memory for the target file and jumps to the base (or offset) of the allocated memory. This allows an analyst to quickly debug into extracted artifacts with minimal overhead and effort.

@mike-hunhoff mike-hunhoff added the 🆕 package New package request/idea/PR label Jan 11, 2024
@mike-hunhoff
Copy link
Author

See #825 for 32-bit version.

@Ana06
Copy link
Member

Ana06 commented Jan 12, 2024

@mike-hunhoff do we want to install both the 32 and the 64 versions?

@Ana06 Ana06 added the 🌀 FLARE-VM A package or feature to be used by FLARE-VM label Jan 12, 2024
@Ana06 Ana06 self-assigned this Jan 12, 2024
@mike-hunhoff
Copy link
Author

@mike-hunhoff do we want to install both the 32 and the 64 versions?

Yeah my experience is that I've needed the 32-bit blobrunner for 32-bit shellcode and vice versa.

@Ana06
Copy link
Member

Ana06 commented Jan 15, 2024

ok, thanks @mike-hunhoff! I think both are console app applications. Other than that the information LGTM!

@Ana06 Ana06 added the send PR Triggers a workflow that send a PR for the package issue label Jan 15, 2024
@github-actions github-actions bot removed the send PR Triggers a workflow that send a PR for the package issue label Jan 15, 2024
@Ana06 Ana06 added the send PR Triggers a workflow that send a PR for the package issue label Jan 15, 2024
@github-actions github-actions bot removed the send PR Triggers a workflow that send a PR for the package issue label Jan 15, 2024
@Ana06 Ana06 closed this as completed in 3e2d4e2 Jan 15, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
🌀 FLARE-VM A package or feature to be used by FLARE-VM 🆕 package New package request/idea/PR
Projects
None yet
Development

No branches or pull requests

2 participants