Upload files to "Modules/Knowledge/Malware"
This commit is contained in:
27
Modules/Knowledge/Malware/malware_persistence.py
Normal file
27
Modules/Knowledge/Malware/malware_persistence.py
Normal file
@ -0,0 +1,27 @@
|
||||
def get_content():
|
||||
"""
|
||||
Returns structured content for malware persistence mechanisms.
|
||||
"""
|
||||
return [
|
||||
{
|
||||
"title": "Persistence Techniques",
|
||||
"content": """
|
||||
- Registry Keys, Startup Folders.
|
||||
- Scheduled Tasks, Services.
|
||||
"""
|
||||
},
|
||||
{
|
||||
"title": "Indicators of Persistence",
|
||||
"content": """
|
||||
- Unexpected DLLs in memory or on disk.
|
||||
- Scheduled tasks executing at odd times.
|
||||
"""
|
||||
},
|
||||
{
|
||||
"title": "Detection Techniques",
|
||||
"content": """
|
||||
- Memory forensics for hidden processes.
|
||||
- Analyzing autorun entries and system services.
|
||||
"""
|
||||
}
|
||||
]
|
Reference in New Issue
Block a user