Showing posts with label HOW-TO. Show all posts
Showing posts with label HOW-TO. Show all posts

Tuesday, January 19, 2016

Monday, July 20, 2015

How-To: Use Autoruns and Sigcheck with VirusTotal



We know SysInternals has a wonderful set of free tools.

The following two links show how to use two of them along with VirusTotal 



Autoruns:
Shows you what programs are configured to run during system bootup or login, and when you start various built-in Windows applications like Internet Explorer, Explorer and media players. These programs and drivers include ones in your startup folder, Run, RunOnce, and other Registry keys. 


Sigcheck:
Shows file version number, timestamp information, and digital signature details, including certificate chains




How-To links from SANS:


Tuesday, April 8, 2014

Wednesday, March 19, 2014

HOW-TO:- Did not know this - iOS7 Mail function.



I  receives mails that include everything from Alerts(some products can't even provide proper filters so I get spammed at night), reports , requests and they hide the important mails.

So, I found the VIP feature really useful.


The links below has more information:

HOW-TO:- For SIEM folks - Sending Symantec DLP logs to a SIEM in SysLog format



Thought this might be useful for some

http://www.symantec.com/connect/articles/configure-symantec-dlp-rsa-envison-syslog-alert