logo

A Mega Malware Analysis Tutorial Featuring Donut-Generated Shellcode

ID: ec79eed4-6eb2-5773-b2b4-1ada0b010d69

STIX ID: report--ec79eed4-6eb2-5773-b2b4-1ada0b010d69

Feed Name: Palo Alto Networks Unit 42

Threat Score
35/100

Date Published: 2025-08-14

Date Updated: 2026-04-28

Author: Lauren Che and Zong-Yu Wu

...
...

This Unit 42 excerpt provides a hands-on malware analysis tutorial of Donut-generated shellcode, demonstrating how analysts use IDA Pro and x64dbg to reverse position-independent code patterns (e.g., call $+5 / pop eax / sub eax,5) to resolve PC-relative addresses; the report includes a SHA256 indicator and file metadata and discusses protections and detection recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.