I. Giới thiệu chung Tiếp tục với chủ đề Anti-Debug, ở phần 22 này chúng ta sẽ tìm hiểu thêm hai “thủ thuật” mới, thường được áp dụng cùng nhau hoặc riêng lẻ. Crackme để chúng ta nghiên cứu trong phần này là Sphynx.exe, của tác giả có nick name là d@b. Mặc định tôi [...]
Archive for January, 2010
Malware unpacking in OllyDbg March 26th, 2008 by mkrakvik (1) Tips & Tricks, Videos From time to time, we come across malware that is more interesting than others. A couple of months ago we saw a trojan bot with MSN spreading capabilities. And as usual, the malware was packed. However, I was not able to [...]
Analysing malicious PDF documents and shellcode
Posted: January 28, 2010 in Other TutorialsTags: Analysing malicious PDF
Analysing malicious PDF documents and shellcode August 24th, 2008 by mkrakvik (1) Analysis, Videos It’s time for another video-post, and this time we’re going to look at a malicious PDF document attempting to exploit a known vulnerability in the Collab.collectEmailInfo() function. We’re going to show how you can extract the shellcode and perform some static [...]
Cuối tháng mở cửa REA cho anh em reg acc! Regards m4n0w4r