Irregular Expressions:

vmware malware detection

1

August 18, 2012  12:39 AM

Working With Packed / Protected Executables



Posted by: Dan O'Connor
code packer, packed code, tools, vmware, vmware malware detection, vulnerabilities

First I have to say that I dislike having to do this. My main problem is that if you are going to take the time to pack and attempt to protect your EXE, it's obvious that you are up to no good. For legitimate applications there is times when you would want to do this, but if it's some random...

August 15, 2012  7:28 PM

VMWare Malware Lab – Networking Edition



Posted by: Dan O'Connor
avoid virtual machine malware detection, virtual, vmware, vmware malware detection

When doing analysis I try to keep away from the infection machine, I keep my lab statically setup with an IP, and DNS, Gateway pointing at another machine. For a basic target all you need to do is have tcpdump running to capture any networking requests. If you want to get more complicated you can...


1

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to: