DYNAMIC MALWARE ANALYSIS – PROCESS MONITOR AND EXPLORER | By Prasanna B Mundas
Tags
attack-pattern: | Data Malware - T1587.001 Malware - T1588.001 Software - T1592.002 Windows Service - T1543.003 Tool - T1588.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 1ab40729-562a-4341-a370-99f2325ed9ee |
Fingerprint | e634dd171df50591 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | March 14, 2019, 12:26 p.m. |
Added to db | Jan. 18, 2023, 9:41 p.m. |
Last updated | Nov. 17, 2024, 6:49 p.m. |
Headline | DYNAMIC MALWARE ANALYSIS – PROCESS MONITOR AND EXPLORER | By Prasanna B Mundas |
Title | DYNAMIC MALWARE ANALYSIS – PROCESS MONITOR AND EXPLORER | By Prasanna B Mundas |
Detected Hints/Tags/Attributes | 39/1/13 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 201 | msdn.microsoft.com |
|
Details | Domain | 6 | channel9.msdn.com |
|
Details | Domain | 8 | www.howtogeek.com |
|
Details | Domain | 34 | blogs.technet.microsoft.com |
|
Details | Domain | 1 | prasannamundas.com |
|
Details | File | 1 | wshost.exe |
|
Details | File | 1260 | explorer.exe |
|
Details | Url | 1 | https://msdn.microsoft.com/en-us/library/windows/desktop/aa363858(v=vs.85).aspx |
|
Details | Url | 1 | https://channel9.msdn.com/shows/defrag-tools/defrag-tools-3-process- |
|
Details | Url | 1 | https://channel9.msdn.com/shows/defrag-tools/defrag-tools-4-process-monitor |
|
Details | Url | 1 | https://www.howtogeek.com/school/sysinternals-pro/lesson2 |
|
Details | Url | 1 | https://blogs.technet.microsoft.com/motiba/2016/05/04/process-monitor-for-dynamic-malware-analysis |
|
Details | Url | 1 | http://prasannamundas.com/share/dynamic-malware-analysis-process-monitor-and-explorer |