Welcome to the new Woodmann RCE Messageboards Regroupment
Please be patient while the rest of the site is restored.

To all Members of the old RCE Forums:
In order to log in, it will be necessary to reset your forum login password ("I forgot my password") using the original email address you registered with. You will be sent an email with a link to reset your password for that member account.

The old vBulletin forum was converted to phpBB format, requiring the passwords to be reset. If this is a problem for some because of a forgotten email address, please feel free to re-register with a new username. We are happy to welcome old and new members back to the forums! Thanks.

All new accounts are manually activated before you can post. Any questions can be PM'ed to Kayaker.

Buster Sandbox Analyzer

This forum focuses on analyzing malware and any aspects of dealing with packer protections.
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.75.

Changes:

+ Updated HexDive to version 0.4
+ Removed functionalities to locate bugs
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.76.

Changes:

+ Added a feature to check for API hooks
+ Added “Launch Custom Applications” feature
+ Added new malware behaviours
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Removed “Launch Internet Explorer” and “Launch Windows Explorer” features
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.77.

Changes:

+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.78.

Changes:

+ Added a feature to specify report folder in automatic mode
+ Improved “URL Analyzer” feature
+ Improved command line feature
+ Removed “Save Settings on Exit” feature
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.79.

Changes:

+ Added “Edit BSA_USER.DAT” feature
+ Improved typical error problem checkings
+ Udated BSA.DAT
+ Updated LOG_API
+ Updated malware behaviors
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.80.

Changes:

+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Updated “URL Analyzer” feature
+ Udated BSA.DAT
+ Updated LOG_API
+ Updated malware behaviors
+ Updated HexDive
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.81.

Changes:

+ Updated LOG_API
+ Updated “URL Analyzer” feature
+ Updated “Check for Updates” feature
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.82.

Changes:

+ Added a feature to analyze Android applications
+ Added new malware behaviours
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Improved “Run Custom Command On Finish” feature
+ Updated LOG_API
+ Updated HexDive to version 0.6
+ Updated ExeInfo to version 0.0.3.2
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.83.

Changes:

+ Added new malware behaviours
+ Added the possibility of including comments in BSA.DAT
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Optimized file string search
+ Updated BSA.DAT
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.84.

Changes:

+ Added “[Custom_File_Entries]” section to BSA.DAT
+ Added a feature to extract files from PCap files in automatic mode
+ Added new malware behaviors
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ GUI has been redesigned
+ Updated BSA.DAT
+ Updated LOG_API
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzed 1.85.

Changes:

+Added a feature to run silently setups if possible in automatic mode
+Added a feature to view malware analysis on finish in manual mode
+Added a feature to save connection information to CSV file in “Pcap Explorer” feature
+Added a feature to refresh BSA window
+Removed several program dependencies (REG.EXE, STRINGS.EXE, …)
+DAT files move to “DATA” folder
+Improved “File Strings” feature
+Updated BSA.DAT
+Updated LOG_API
+Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.86.

Changes:

+ LOG_API completely rewritten and improved
+ Added “Use Deep Dump Method” feature
+ Added “Send a Return Every 10 seconds” feature
+ Added a feature to show all logged APIs
+ Added a feature to save connection information to HTML file in “Pcap Explorer” feature
+ Added new malware behaviors
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Updated “Process Explorer” feature
+ Updated BSA.DAT
+ Updated PeID´s USERDB.TXT
+ Updated Exeinfo´s Ext_Detector.DLL
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.87.

Changes:

+ Added new malware behaviors
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Improved “Include VirusTotal Malware Information of Dropped Files” feature
+ Updated XML and Json format schemas
+ Updated LOG_API
+ Updated BSA.DAT
+ Fixed several bugs
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

After a few tests with Sandboxie version 4 and due the major changes to underlying architecture I have considered Sandboxie is not suitable for malware analysis anymore, therefore Buster Sandbox Analyzer development will be discontinued.
VirusBuster
Member
Posts: 85
Joined: Mon Aug 27, 2007 10:48 am

Post by VirusBuster »

Released Buster Sandbox Analyzer 1.88 - Final Release

Changes:

+ Added support for MAEC 3.0 reports
+ Fixed VirusTotal report information
Locked