1
0
mirror of https://github.com/nganhkhoa/malware.git synced 2024-06-10 21:32:07 +07:00

Update malware-analysis_ref_and_memo.md

This commit is contained in:
mether049 2020-01-27 23:59:08 +09:00 committed by GitHub
parent 2713d4edeb
commit 809a3ecac6
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -95,11 +95,14 @@
|Yomi Sandbox|https://yomi.yoroi.company/upload|| |Yomi Sandbox|https://yomi.yoroi.company/upload||
|UnpacMe|https://www.unpac.me/#/|online unpacker,beta| |UnpacMe|https://www.unpac.me/#/|online unpacker,beta|
### Unpacker/Decryptor ### Unpacker/Decryptor/Extractor
- 攻撃者グループTA505が利用するマルウェア(GetandGoDll, Silence, TinyMet, Azorult, KBMiner, etc.)の静的アンパッカー<br> - 攻撃者グループTA505が利用するマルウェア(GetandGoDll, Silence, TinyMet, Azorult, KBMiner, etc.)の静的アンパッカー<br>
[TAFOF-Unpacker](https://github.com/Tera0017/TAFOF-Unpacker) [TAFOF-Unpacker](https://github.com/Tera0017/TAFOF-Unpacker)
- Trickbotのartifactを取得するためのdecrypter<br> - Trickbotのartifactを取得するためのdecrypter<br>
[Trickbot artifact decrypter](https://github.com/snemes/malware-analysis/tree/master/trickbot) [Trickbot artifact decrypter](https://github.com/snemes/malware-analysis/tree/master/trickbot)
- Injecition/Hollowingされたプロセスの抽出<br>
[Memhunter](https://github.com/marcosd4h/memhunter)
# Doc Analysis # Doc Analysis
- VBA マクロの解析についての資料<br> - VBA マクロの解析についての資料<br>