目录
iii
2.13 本地作业调度 ................................................................................................................................ 25
2.14 LSASS 驱动程序 ........................................................................................................................... 26
2.15 Mshta 命令 ..................................................................................................................................... 27
2.16 PowerShell .................................................................................................................................... 28
2.17 Regsvcs/Regasm 命令 .................................................................................................................. 29
2.18 Regsvr32 命令 ............................................................................................................................... 30
2.19 Rundll32 命令 ................................................................................................................................ 31
2.20 定时任务 ....................................................................................................................................... 32
2.21 脚本编程 ....................................................................................................................................... 34
2.22 服务执行 ....................................................................................................................................... 35
2.23 签名二进制代理执行 ..................................................................................................................... 36
2.24 签名脚本代理执行 ......................................................................................................................... 37
2.25 Source 命令 ................................................................................................................................... 38
2.26 文件名后加空格 ............................................................................................................................ 39
2.27 第三方软件 .................................................................................................................................... 40
2.28 Trap 命令 ....................................................................................................................................... 41
2.29 可信的开发工具 ............................................................................................................................ 42
2.30 用户执行 ....................................................................................................................................... 44
2.31 Windows 管理指令集 ..................................................................................................................... 45
2.32 Windows 远程管理 ........................................................................................................................ 45
2.33 XSL 脚本处理 ................................................................................................................................ 46
持久化 ...........................................................................................................................48
3.1 bashrc.............................................................................................................................................. 48
3.2 辅助功能 ......................................................................................................................................... 49
3.3 账号操纵 ......................................................................................................................................... 50
3.4 AppCert DLL .................................................................................................................................... 51
3.5 AppInit DLL ...................................................................................................................................... 52
3.6 应用兼容转接 .................................................................................................................................. 53
3.7 身份认证包 ..................................................................................................................................... 55
3.8 BITS 作业 ........................................................................................................................................ 55
3.9 Bootkit ............................................................................................................................................. 57
3.10 浏览器扩展 .................................................................................................................................... 57
3.11 更改默认文件关联 ......................................................................................................................... 58
3.12 组件固件 ....................................................................................................................................... 59
评论0
最新资源