#malware #wireshark #procdot
In this video, I cover an awesome utility called ProcDOT. As you are likely aware, Sysinternals’ Process Monitor, also known as Procmon, in combination with PCAP data provides a treasure trove of information that is commonly used in behavioral malware analysis. The problem is, data from those sources is disparate, and typically manual analysis is required to correlate process-related information from Procmon with the corresponding network-related activity derived from the packet captures. What if there was a utility that did that for us, AND presented the results in an interactive, visual format? Enter ProcDOT.
** If you enjoy this video, like&subscribe to my channel **
#cybersecurity #tryhackme #procmon #malware #digitalforensics
Follow & Connect
Linkedin
linkedin.com/in/hacksi
Medium
medium.com/@huseyin.eksi
Twitter
twitter.com/solarbuster10