# Chigger's Blogs > A personal blog notes on Cybersecurity, and technology, documenting discoveries, research, and lessons learned along the way. ## Posts - [Tinh thần CR7 - SIUUUU](https://blog.chiggerlord.uk/posts/tinh-than-cr7-siuuuu.md): Bóng đá là bộ môn thể thao ảnh hưởng tới tính cách của tôi. - [Malware Analyst Journey - Hành trình zero to one malware analyst skills](https://blog.chiggerlord.uk/posts/malware-analyst-journey-hanh-trinh-zero-to-one-malware-analyst-skills.md): Tôi mất trí nhớ =\)\) Tôi là người đã quên mất 99% x86 assembly từng học ở đại học và đang cố tìm lại ký ức - [PCA - Anti Forensics ngưng đọng thời gian](https://blog.chiggerlord.uk/posts/pca-anti-forensics-ngung-dong-thoi-gian.md): Chỉ cần 1 ký tự đặc biệt đóng băng artifact - [Program Compatibility Assistant - Ghi lại bằng chứng Program Execution được kích hoạt bằng GUI](https://blog.chiggerlord.uk/posts/program-compatibility-assistant-ghi-lai-bang-chung-program-execution-duoc-kich-h.md): PCA ghi nhận thông tin về các chương trình được người dùng khởi chạy thông qua Windows Explorer - [SRUM — Giải mã dấu vết thực thi ngầm và truyền tải dữ liệu trong điều tra số](https://blog.chiggerlord.uk/posts/srum-forensics-trong-windows-phan-tich-dau-vet-hanh-vi-he-thong.md): Khai thác System Resource Utilization Monitor để tái dựng lịch sử thực thi và truy vết dòng thời gian hệ thống. - [$I30: Dấu Vết Còn Sót Lại Của Những File Đã Bị Xóa Trên Windows](https://blog.chiggerlord.uk/posts/i30-dau-vet-con-sot-lai-cua-nhung-file-da-bi-xoa-tren-windows.md): $I30 là artifact NTFS chứa thông tin về các file và thư mục từng tồn tại trong một thư mục, giúp điều tra viên phát hiện các đối tượng đã bị xóa và khôi phục dấu vết hoạt động trên hệ thống Windows. - [Recycle Bin Forensics – Windows lưu lại gì sau khi xóa một file](https://blog.chiggerlord.uk/posts/recycle-bin-forensics-windows-luu-lai-gi-sau-khi-xoa-mot-file.md): Bạn có biết rằng mỗi khi bạn xóa một file trong Windows, hệ điều hành vẫn âm thầm giữ lại cả thông tin lẫn nội dung của nó trong Recycle Bin thông qua cặp file $I và $R? ## Series - [Malware Analyst Journey](https://blog.chiggerlord.uk/series/malware-analyst-journey) (1 post) - [Digital Foreniscs](https://blog.chiggerlord.uk/series/digital-forensics) (5 posts): Lần theo từng dấu vết để tìm sự thật, nơi lịch sử duyệt web luôn nhớ những gì chủ nhân muốn quên =\)\) ## Tags - digital-forensics: https://blog.chiggerlord.uk/tags/digital-forensics - malware-analysis: https://blog.chiggerlord.uk/tags/malware-analysis - threat-research: https://blog.chiggerlord.uk/tags/threat-research - windows: https://blog.chiggerlord.uk/tags/windows