WeDoPlants Lab 002: Windows – Registry Run key/Task Scheduler
To see Lab setup, click here. Planting “clues”: I’m practicing how to find evidence of persistence using Windows built-in tools, logs, and cmd commands. Clues to plant: sus Scheduled Task sus Run registry key (Planning to add more clues, that are more interesting) Clue 1: Sus Scheduled task Create persistence that looks shady but doesn’t … Read more