From 863045051accd2194f8c965353506872c82c3feb Mon Sep 17 00:00:00 2001 From: mether049 Date: Thu, 18 Jun 2020 21:01:24 +0900 Subject: [PATCH] Update malware-analysis_ref_and_memo.md --- malware-analysis_ref_and_memo.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/malware-analysis_ref_and_memo.md b/malware-analysis_ref_and_memo.md index e020a32..a7a9a9b 100644 --- a/malware-analysis_ref_and_memo.md +++ b/malware-analysis_ref_and_memo.md @@ -353,6 +353,10 @@ Injecition/Hollowingされたプロセスの自動検出
- SDBbotのアンパッカー - **[Malware Script](https://github.com/sysopfb/Malware_Scripts)** - Decoderやunpacker(複数種) +- **[deICEr](https://github.com/f0wl/deICEr)** + - IcedIDのconfig extractor +- **[CobaltStrikeParser](https://github.com/Sentinel-One/CobaltStrikeParser)** + - CobaltStrikeのconfig Parser # PDF Analysis