📘
DFIR
Ctrlk
  • Networking
    • Networking
  • Windows
    • Administration
    • Forensics
    • Cheat Sheet
    • Investigation
    • Internals
      • Structure
      • Privileges
      • Applications
        • Werfault
        • Process Creation
        • Pipes
        • AMSI
        • LOLBins
        • PowerShell
        • LSASS
    • Active Directory
    • MISC
  • Linux
    • Forensics
    • SSH
    • Linux WebShells
    • Directories of Interest
    • Internals
  • Enterprise Architecture
    • CI/CD Pipline
    • Citrix
    • Web Applications
    • The Cloud
    • vSphere
    • Containers
    • Troubleshooting
  • Mac
    • Forensics
  • Attacker Information
    • Adversary Operations
    • Actor Playbooks
    • Abused Domains
  • IR Playbook
    • Activity from Unmanaged Host
    • Recommendations
  • Reverse Engineering
    • Python - Pyinstaller
Powered by GitBook
On this page
  1. Windows
  2. Internals

Applications

WerfaultProcess CreationPipesAMSILOLBinsPowerShellLSASS
PreviousUACNextWerfault

Last updated 1 year ago