mirror of
https://github.com/nganhkhoa/malware.git
synced 2024-06-10 21:32:07 +07:00
Update malware-analysis_ref_and_memo.md
This commit is contained in:
parent
250ad7302d
commit
892a3cce8f
@ -381,7 +381,10 @@ Injecition/Hollowingされたプロセスの自動検出<br>
|
||||
- etc.
|
||||
- **[formbook_decode_pcap.py](https://github.com/ThisIsSecurity/malware/tree/master/formbook)**
|
||||
- formbookの通信のデコードプログラム
|
||||
|
||||
# Email Analysis
|
||||
- **[EML analyzer](https://github.com/ninoseki/eml_analyzer)**
|
||||
- ヘッダ,ボディ,添付ファイルのanalysis
|
||||
- IoCの抽出
|
||||
|
||||
# PDF Analysis
|
||||
- **[pdfid.py](https://blog.didierstevens.com/programs/pdf-tools/)**
|
||||
|
Loading…
Reference in New Issue
Block a user