Tag Archives: registry

Registry Dumper - Find and Dump Hidden Registry Keys

The cybercriminals behind Poweliks implemented two clever techniques in their malware. The first was leveraging rundll32.dll to execute Javascript and the second was using a method to hide/protect their registry keys. I’ll be focusing on the second method. The technique … Continue reading

Posted in Malscript, Tools | Tagged , , , | Comments Off on Registry Dumper - Find and Dump Hidden Registry Keys