1st 3 Windows IR Commands - BHIS Nuggets | John Strand

preview_player
Показать описание


 
📄 View the Antisyphon Course Catalog

John Strand's favorite 3 Windows IR (Incident Response) commands.

Black Hills Infosec Socials

Black Hills Infosec Shirts & Hoodies

Black Hills Infosec Services

Backdoors & Breaches - Incident Response Card Game

Antisyphon Training

Educational Infosec Content

Рекомендации по теме
Комментарии
Автор

You taught us this a long time ago in a GCIH class in Vegas. It looks like a lot of the basics don't change so much. Almost every time I teach someone netstat -anob they think I'm some type of wizard :)

joepangit
Автор

Great video. I'm glad that all those hours spent looking at the output of netstat haven't been wasted 😂

I would love a bit more of an explanation as to why you'd see those 4 DLLs in a lot of application level backdoor 😊

GadgetMick
Автор

Your impression of the YouTube troll was perfect 😂

sjporter
Автор

"hot state on state actor action" 😂

thedevinmccarthy
Автор

wHaT iF tHe MaLwArE iS uSinG rAw SoCkEtZ

baconblaster
Автор

I like Resource Monitor GUI to see network connections and file access by processes. Perfmon.exe /res

alexmags