DFC

http://dandylife.net/docs/Windows-Registry-Artifacts.pdf

https://moaimoai.tistory.com/186

https://m.blog.naver.com/bitnang/70180095500

https://m.blog.naver.com/sunkwang0307/221423480817

https://thehackernews.com/2022/05/microsoft-releases-workarounds-for.html?m=1

https://redcanary.com/blog/intelligence-insights-april-2022/

https://usersearch.org/updates/2022/01/31/osint-investigations-top-tools-techniques-used-by-experts/

https://www.youtube.com/watch?v=Qqxe3n9Gb0U

https://www.sdxcentral.com/articles/news/vmware-builds-contexa-brain-to-identify-friend-from-foe/2022/06/

https://medium.com/s2wblog/emerging-threats-to-nft-91131c9c8326#id_token=eyJhbGciOiJSUzI1NiIsImtpZCI6Ijc0ODNhMDg4ZDRmZmMwMDYwOWYwZTIyZjNjMjJkYTVmZTM5MDZjY2MiLCJ0eXAiOiJKV1QifQ.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.MXkqhX6f_Exk77e62CHshTSabGmigy34WxEmmkEVXQop33nLxnIn72-6utZm7pFkdC4GiBdHbQJkTa2E0ZGt5Dl6B4d1chQX46KRoXFiWVCpfk6tg914FK8gSUckzycR-7i9HDBar0eknVrypOqX0ptLI3jlcmmm8XfHkaZHXipiUE-RTTKpQYp4r2l5i3yM7TcRPu4UL-5_v3N2tEJZm4KxI9EiyL972I0V2ca8UdnyhljqBuwsIckeTrhvADAcafrnzk_nzkduj2zGfjJTyp1r1EbO8aNap2uYFKxYeJhQWyXMrGW2jVDU14GBPWsNZt1nfuoYZi_BCQyyb4mh7g

winsock2 악성코드

dwm 악성코드 레지스트리

https://www.ahnlab.com/kr/site/securityinfo/asec/asecCodeView.do?virusSeq=36367&tabGubun=1

https://www.yumpu.com/en/document/view/17490388/reversing-malware-analysis-of-the-worm-tibickd-danielpdf

https://codediver.tistory.com/17

https://yum-history.tistory.com/287


6.22

https://blog.tomclansys.com/16