Technical requirements
The following tools and resources are used throughout this chapter:
- Notepad++:
- Autoruns: https://docs.microsoft.com/en-us/sysinternals/downloads/autoruns
- munin:
- VirusTotal API key: https://www.virustotal.com/gui/join-us
- YARA: https://virustotal.github.io/yara/
- CrowdResponse: https://www.crowdstrike.com/resources/community-tools/crowdresponse
- yara_scanner:
- psexec.exe: https://docs.microsoft.com/en-us/sysinternals/downloads/psexec