killchain-compendium/Forensics/Malware.md

10 lines
196 B
Markdown

# Malware
## Tools
[Detect is Easy | DIE](https://github.com/horsicq/Detect-It-Easy)
* Analyze with `capa <binary>`
* Unpack with `upx`
* Re-analyze after deleting the cache `del <binary>.viv`