
恶意代码相关
kezhen
这个作者很懒,什么都没留下…
展开
-
恶意代码分析利器 – scdbg
什么是scdbgscdbg是一款多平台开源的Shellcode模拟运行、分析工具。其基于libemulibrary搭建的虚拟环境,通过模拟32位处理器、内 存和基本Windows API运行环境来虚拟执行Shellcode以分析其行为。有了虚拟执行妈妈再也不用担心我的电脑中病毒了。基本原理众所周知,shellcode为了实现特定的功能必须通过调用系统API来完成-不论先前怎怎么变形怎么转载 2014-01-06 09:28:36 · 1971 阅读 · 1 评论 -
Analyzing PDF Malware - Part 2
Where were we?As the title states, this is the second part of Analyzing PDF Malware. If you haven’t read the first part you can find it here. Go ahead and read it now if you haven’t already, we’ll转载 2014-04-10 11:11:47 · 1903 阅读 · 0 评论 -
Analyzing PDF Malware - Part 3A
When we last left our heroes…This is the third part of the Analyzing PDF Malware series. If you haven’t read the first and second parts you can find them here and here respectively. We will be bui转载 2014-04-10 11:15:50 · 1726 阅读 · 0 评论 -
Analyzing PDF Malware - Part 3B
Down that dusty trail…As the big blue letters above state, this is part 3B of the Analyzing PDF Malware series. If you haven’t read any of the preceding posts you can find them here: Part1, Part2,转载 2014-04-10 11:17:24 · 1521 阅读 · 0 评论 -
Analyzing PDF Malware - Part 3D
http://blog.spiderlabs.com/2012/07/analyzing-pdf-malware-part-3d.htmlThis is part 3D, the final point in the Analyzing PDF Malware constellation. If you haven’t read any of the preceding pos转载 2014-04-10 11:21:03 · 1704 阅读 · 0 评论 -
Analyzing PDF Malware - Part 3C
Let me explain, no there is too much, let me sum up…This is part 3C in the ongoing saga of the Analyzing PDF Malware series. If you haven’t read any of the preceding posts you can find them all righ转载 2014-04-10 11:19:27 · 1160 阅读 · 0 评论 -
恶意代码分析平台Truman相关资料
Truman 下载:http://www.secureworks.com/cyber-threat-intelligence/tools/truman/原创 2014-06-06 11:48:56 · 7815 阅读 · 0 评论 -
Malware online scanners
转自:http://cleanbytes.net/malware-online-scanners转载 2014-05-26 10:50:20 · 2092 阅读 · 0 评论 -
Analyzing PDF Malware - Part 1
BackgroundI’d like to think that security awareness has gotten to the point where the average end user thinks twice before opening an ‘exe’ file sent to them as an email attachment. I like to think转载 2014-04-10 11:08:33 · 1169 阅读 · 0 评论