mirror of
https://github.com/nganhkhoa/malware.git
synced 2024-06-10 21:32:07 +07:00
Update malware-analysis_ref_and_memo.md
This commit is contained in:
parent
250ad7302d
commit
892a3cce8f
@ -381,7 +381,10 @@ Injecition/Hollowingされたプロセスの自動検出<br>
|
|||||||
- etc.
|
- etc.
|
||||||
- **[formbook_decode_pcap.py](https://github.com/ThisIsSecurity/malware/tree/master/formbook)**
|
- **[formbook_decode_pcap.py](https://github.com/ThisIsSecurity/malware/tree/master/formbook)**
|
||||||
- formbookの通信のデコードプログラム
|
- formbookの通信のデコードプログラム
|
||||||
|
# Email Analysis
|
||||||
|
- **[EML analyzer](https://github.com/ninoseki/eml_analyzer)**
|
||||||
|
- ヘッダ,ボディ,添付ファイルのanalysis
|
||||||
|
- IoCの抽出
|
||||||
|
|
||||||
# PDF Analysis
|
# PDF Analysis
|
||||||
- **[pdfid.py](https://blog.didierstevens.com/programs/pdf-tools/)**
|
- **[pdfid.py](https://blog.didierstevens.com/programs/pdf-tools/)**
|
||||||
|
Loading…
Reference in New Issue
Block a user