-
-
[转帖]Malwasm Offline debugger for malware's reverse engineering
-
发表于: 2012-10-26 11:01 1442
-
Malwasm Offline debugger for malware's reverse engineering
Presentation
Malwasm is a tool based on Cuckoo Sandbox available here.
Malwasm was designed to help people that do reverse engineering. Malwasm step by step:
the malware to analyse is executed through Cuckoo Sandbox
during the execution, malwasm logs all activites of the malware with pintool
all activities are stored in a database (Postgres)
a web service is available to visualize and manage the data stored in the database
Features
Malwasm provides these features:
offline programs debugging
possibility to go back or forward in the execution's time (with a time slide bar)
states of registers and flags
values of the stack/heap/data
"Following dump" options
fully works in the browser
http://code.google.com/p/malwasm
赞赏
他的文章
- [转帖]IDM.Computer.Solutions.UltraEdit.Enterprise.v2024.1.0.36.x64.Incl.Keyfilemaker-BTCR 1796
- [转帖]IDM.Computer.Solutions.UEStudio.Enterprise.v2024.1.0.36.x64.Incl.Keyfilemaker-BTCR 1804
- [转帖]IDM.Computer.Solutions.UltraFinder.Enterprise.v2023.0.0.17.x64.Incl.Keyfilemaker-BTCR 1681
- [转帖]JEB Decompiler 5.20.0.202411121942 mod by CXV 1710
- [转帖]Tenorshare.4uKey.for.Android.v2.1.1-AMPED 941
看原图
赞赏
雪币:
留言: