반응형
Network Tools
PE Analysis Tools
- PE-bear
- pev the PE file analysis toolkit
- PeStudio
- PEiD
- Resource Hacker
- CFF Explorer
- Exeinfo PE
- Dependency Walker
Dynamic / Behavioral Analysis Tools
- Process Explorer
- Process Monitor
- Process Hacker
- CaptureBAT
- Sysmon
- API Monitor
- CMD Watcher
- Autoruns
- Regshot
- Flypaper (Password : “rich”)
- Microsoft ASA (Attack Surface Analyzer)
Debugging Tools
Reverse Engineering Tools
Analyzing Suspicious Files / Sandboxing
VB Analysis Tools
Strings Analysis Tools
Malware Analysis VM
Other
Resources / Getting Started
- Colin Hardy
- OALabs
- Malware Unicorne Workshops
- MalwareAnalysisForHedgehogs
- How to start RE/malware analysis? — hasherezade
- Malwology
- Haruko
- MalwareTech
- Malware Breakdown
- Malware-Traffic-Analysis
- Journey Into Incident Response
- Analyzing Malicious Documents Cheat Sheet
Malware Samples
반응형
'IT > malware' 카테고리의 다른 글
Powshell script obfuscation decode :: with api monitor (0) | 2022.09.08 |
---|---|
[malware] 악성코드 분석도구 사용법 :: Process monitor (0) | 2022.08.26 |
악성코드 분석 도구 모음 :: Sysinternals Suite (0) | 2021.06.12 |
악성코드 분석 도구 :: ProcDot (0) | 2021.06.07 |