Welcome to the new Woodmann RCE Messageboards Regroupment
Please be patient while the rest of the site is restored.

To all Members of the old RCE Forums:
In order to log in, it will be necessary to reset your forum login password ("I forgot my password") using the original email address you registered with. You will be sent an email with a link to reset your password for that member account.

The old vBulletin forum was converted to phpBB format, requiring the passwords to be reset. If this is a problem for some because of a forgotten email address, please feel free to re-register with a new username. We are happy to welcome old and new members back to the forums! Thanks.

All new accounts are manually activated before you can post. Any questions can be PM'ed to Kayaker.

Gathering external information and using the most suitable tool to ease your malware

All the collected blog posts from the members of our community, and some others
(i.e. both from <a href="http://www.woodmann.com/forum/blog.php">local</a> and external blogs, please let us know about any good external ones to import!). Feel free to discuss/comment any blog post in here.
Locked
My Infected Computer
Posts: 25
Joined: Sun Jun 16, 2013 5:42 pm
Contact:

Gathering external information and using the most suitable tool to ease your malware

Post by My Infected Computer »

Here is a little story of how I approached the malware of the day, I hope to entertain you a little with this light post. The malware is MFC based, and among all the sections there is one with a suspicious name: “.aspack”. It’s a good starting point, too bad the section is neither packed […]Image

http://zairon.wordpress.com/2014/04/13/ ... -analysis/
Locked