1
0
mirror of https://github.com/nganhkhoa/malware.git synced 2024-06-10 21:32:07 +07:00

Update malware-analysis_ref_and_memo.md

This commit is contained in:
mether049 2020-10-17 19:36:57 +09:00 committed by GitHub
parent a8b7c9d88a
commit 592f3dbf6d
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -224,6 +224,10 @@ DFIR,マルウェア解析OSINTに特化したUbuntuベースのディスト
- **RegShot**
- **Regedit**
- **[RegistryChangesView](https://www.nirsoft.net/utils/registry_changes_view.html)**
- ref:
- [How to check the Registry for malware and manually remove the entries in Windows 10](https://www.thewindowsclub.com/check-and-manually-remove-malware-from-registry)
- [Digital Forensics, Part 5: Analyzing the Windows Registry for Evidence](https://www.hackers-arise.com/post/2016/10/21/digital-forensics-part-5-analyzing-the-windows-registry-for-evidence)
- [Finding Registry Malware Persistence with RECmd](https://www.sans.org/blog/finding-registry-malware-persistence-with-recmd/)