본문 바로가기
[시스템툴]Sysinternals Tools Update - ProcDump v3.02, Contig v1.6, TCPView v3.03 and a New Mark's Blog Post Sysinternals Tool 중 몇가지가 업데이트 되었네요! 링크 연결 하오니~ 필요하신 분들은 다운로드 받으세요!! 업데이트 이외 마크의 블로그에도 글이 올라왔습니다. 참고하세요. - 업데이트 목록(클릭 하시면 새창으로 이동합니다) ProcDump v3.02: This update to ProcDump, a command-line utility that can capture process dumps based on performance or behavioral triggers, adds more information to the minidump plus dump type, and ignores breakpoint exceptions unless overridden with the new -b swi.. 2011. 2. 3.
[분석툴]The Tools(Online Tools - Sunday, January 30, 2011 - Updated) 원본 : http://www.mysectools.com/MySecTools/The_Tools/Entries/2011/1/30_Online_Tools.html The online tools contains an updated list of online resources that can be used to help determine when a file is malicious or if website contains suspicious activity. Anubis - “Anubis is a service for analyzing malware.” http://anubis.iseclab.org/ Bitblaze -Online Unpacker https://aerie.cs.berkeley.edu/submits.. 2011. 2. 1.
[시스템툴]Sysinternals Tools Update - ListDLLs v3.0, Handle v3.45, and Process Monitor v2.94  Sysinternals Tool 중 몇가지가 업데이트 되었네요! 링크 연결 하오니~ 필요하신 분들은 다운로드 받으세요!! - 업데이트 목록(클릭 하시면 새창으로 이동합니다) ListDLLs v3.0 : This update to ListDLLs, a command-line utility for listing the DLLs that processes have loaded, is compatible with 64-bit processes and includes a number of bug fixes. Handle v3.45 : Handle is a command-line utility for displaying the kernel handles processes have open. V3.43 shows.. 2011. 1. 20.
[루트킷]Kernel Detective v1.4.1 분석툴로 많이 사용되고 있는 Kernel Detective 프로그램이 업데이트 되었네요. - 다운로드 링크 : http://www.at4re.com/download.php?view.2 - 파일 다운로드 : Kernel Detective is a free tool that help you detect, analyze, manually modify and fix some Windows NT kernel modifications. Kernel Detective gives you the access to the kernel directly so it's not oriented for newbies. Changing essential kernel-mode objects without enough knowledge.. 2011. 1. 14.
[시스템툴]Sysinternals Tools Update - ProcDump v3.01 Sysinternals Tool 중 ProDump v3.0의 버그픽스가 업데이트 된 v3.1이 업데이트 되었네요! 링크 연결 하오니~ 필요하신 분들은 다운로드 받으세요!! - 업데이트 목록(클릭 하시면 새창으로 이동합니다) ProcDump v3.01: This release fixes a bug that could cause ProcDump to crash when used with the miniplus dump option (-mp). 2010. 12. 16.
[시스템툴]Sysinternals Tools Update - ProcDump v3.0, AccessChk v5.01 and a new Mark's Blog Post Sysinternals Tool 중 몇가지가 업데이트 되었네요! 링크 연결 하오니~ 필요하신 분들은 다운로드 받으세요!! 업데이트 이외 마크의 블로그에도 글이 올라왔습니다. 참고하세요. - 업데이트 목록(클릭 하시면 새창으로 이동합니다) ProcDump v3.0 : This update to ProcDump, a flexible command-line utility for capturing process dumps based on time, CPU, memory, or performance counter thresholds, adds a new dump type, Minidump Plus, that uses heuristics to create the equivalent of full dumps for .. 2010. 12. 13.
[분석툴]The Tools(Forensics /Network Forensics Tools - Monday, November 29, 2010 - Updated) 원본 : http://www.mysectools.com/MySecTools/The_Tools/Entries/2010/11/29_Forensics__Network_Forensics_Tools.html This list of Forensics/Network Forensics tools contains some of the tools that can be used to extract valuable info from the system or from network capture files (usually pcap files). Imagine getting a large pcap file and you need to extract all emails form there? Or Extract all jpegs? .. 2010. 12. 3.
[분석툴]The Tools(Online Tools - Monday, November 29, 2010 - Updated) - 원본 : http://www.mysectools.com/MySecTools/The_Tools/Entries/2010/11/29_Online_Tools.html The online tools contains an updated list of online resources that can be used to help determine when a file is malicious or if website contains suspicious activity. Anubis - “Anubis is a service for analyzing malware.” http://anubis.iseclab.org/ Bitblaze -Online Unpacker https://aerie.cs.berkeley.edu/subm.. 2010. 12. 3.