Please enable JavaScript.
Coggle requires JavaScript to display documents.
(NIST Hacking Case) - Coggle Diagram
NIST Hacking Case
Basic Commands
-
-
-
-
-
-
egrep
scans a specific file, line to line, and prints the line(s) that contain the search string/regular expression.
-
-
-
-
-
file
to find a specific file in a given directory, to show file format
Tools and plugins
-
evtparse
-
Windows event file (*.evt) parser, it generates a text csv output from the event files
tshark
lets you capture packet data from a live network, or read packets from a previously saved capture file
rifiuti2
extracts file deletion time, original path and size of deleted files and whether the deleted files have been moved out from the recycle bin since they are trashed
clamav
detects many types of malware, including viruses