Posts Tagged ‘malware forensics’

Most Recent
 
Read More
2018-01-20

Anatomy of the thread suspension mechanism in Windows

Windows NT constantly uses the terms “user mode” and “kernel mode” when discussing the architecture of the OS, so you should determine what it means. This article is divided into separate sections. The first section will discuss the user mode, and the second section will discuss the kernel mode. In both sections, the issue of the suspension and resumption of process flows is discussed.

8
 
Read More
2018-01-17

Detecting Tor communications

More and more people are trying to preserve the inviolability of their frequent life from the long nose of the special services. And then anonymous Tor network comes to their aid. Because it can provide a single individual with a significant weakening of obsessive attention, incidentally removing almost all restrictions on movement on the World Wide Web. In addition, the TOR output nodes are public.

30
 
Read More
2018-01-17

Basics of Powershell Scripting

It is a good idea using Powershell Scripting for DFIR, system administrators and a field work. Hrushikeshk has shared a post ‘Powershell 101’ which contains on notes about how to use Powershell Scripting.

 

19
 
Read More
2018-01-11

VirusTotal Graph Overview

This article is devoted to a tool which understands the relationship between files, URLs, domains and IP addresses and provides a simple interface for turning and navigating through them. This visualization tool is created on top of the VirusTotal data set.

30
Latest Headlines
 
Read More
17
 
Read More
37
 
Read More
128

Trending Topics
digital forensics
computer forensics
mobile forensics
Articles
DFIR
digital forensics software
Android forensics
windows forensics
iOS forensics
Top Stories
 
 
Right Now
 
bstrings 1.0 released
Top Five
Heat Index
 
1
Decrypting encrypted WhatsApp databases without the key
 
2
Chip-off Technique in Mobile Forensics
 
3
How to Make the Forensic Image of the Hard Drive
 
4
Extracting WhatsApp database and the cipher key from a non-rooted Android device
 
5
Android forensic analysis with Autopsy