 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Irregular Expressions &#187; zeus</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/Irregular-Expressions/tag/zeus/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions</link>
	<description>Insight into current security related events and exploits, including virtualization security and tips.</description>
	<lastBuildDate>Sun, 28 Apr 2013 08:00:32 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>The Return Of Zeus</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-return-of-zeus/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-return-of-zeus/#comments</comments>
		<pubDate>Wed, 18 Jul 2012 03:30:45 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[zeus]]></category>
		<category><![CDATA[zeus analysis]]></category>
		<category><![CDATA[zeus botnet]]></category>
		<category><![CDATA[zeus download]]></category>
		<category><![CDATA[zeus source code]]></category>
		<category><![CDATA[zeus walkthrough]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/?p=816</guid>
		<description><![CDATA[I am finally ready to continue my analysis of the zeus sample I have.  I am just getting a couple of machines ready to continue. From this point in I want to continue the behavioral analysis with Capture-BAT on the client and some other honeynet projects on a Linux machine to emulate services. Capture-Bat can [...]]]></description>
				<content:encoded><![CDATA[<p>I am finally ready to continue my analysis of the zeus sample I have.  I am just getting a couple of machines ready to continue.</p>
<p>From this point in I want to continue the behavioral analysis with Capture-BAT on the client and some other honeynet projects on a Linux machine to emulate services.</p>
<p>Capture-Bat can be found here, <a href="https://www.honeynet.org/node/315">https://www.honeynet.org/node/315</a> .</p>
<p>For Linux I will be using REMnux, which you can get here <a href="http://sourceforge.net/projects/remnux/files/version3/remnux-3.0-vm-public.rar/download">http://sourceforge.net/projects/remnux/files/version3/remnux-3.0-vm-public.rar/download</a> .</p>
<p>I will be using REMnux to emulate and capture all of the network traffic.  Just got to get this all setup again.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-return-of-zeus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zeus</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/zeus/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/zeus/#comments</comments>
		<pubDate>Tue, 17 May 2011 04:31:20 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[zeus]]></category>
		<category><![CDATA[zeus botnet]]></category>
		<category><![CDATA[zeus download]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/zeus/</guid>
		<description><![CDATA[Well I guess there is no honor among thieves or something like that.  There is now a version out on the lose and you can find it if you try. I hope I can get into the code soon, I have been waiting for this for a while.]]></description>
				<content:encoded><![CDATA[<p>Well I guess there is no honor among thieves or something like that.  There is now a version out on the lose and you can find it if you try.</p>
<p>I hope I can get into the code soon, I have been waiting for this for a while.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/zeus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
