Jump to content

Malwarebytes

Antivirus 2009 Another Morpher.


3 replies to this topic

#1
JoleFindsTheRogues

    Advanced Member

  • Malware Hunters
  • PipPipPip
  • 213 posts
  • Gender:Male
  • Location:Velika Plana, Serbia.
hxxp://pc-security-scanner.com/2009/1/en/_freescan.php?nu=880939

Not Detected by MBAM.

http://www.virustotal.com/analisis/30ef6a9...6ce5372dd3c53af
Posted Image

#2
salmon

    Advanced Member

  • Honorary Members
  • PipPipPip
  • 179 posts
  • Gender:Male
  • Interests:Mainly salmon
How do you download this safely do you use a virtual machine or sandbox? With no script i cant get the download to come up and i don't want to disable it and visit the site thanks :excl:
Trojan.Salmon moving to fish tank on reboot.

#3
Jaxryley

    Forum Deity

  • Malware Hunters
  • PipPipPipPipPipPip
  • 6,718 posts
  • Gender:Male
  • Location:West Aussie
  • Interests:Gardening and computers.

View Postsalmon, on Jan 6 2009, 02:36 AM, said:

How do you download this safely do you use a virtual machine or sandbox? With no script i cant get the download to come up and i don't want to disable it and visit the site thanks :excl:
Yep, I have to allow sripts globally in order to get a proper feel for malware infested sites.

FF is always run through Sandboxie whilst in Returnil mode when I go a hunting.

VM's are used if something won't run sandboxed but even then some malwares seem to be VM aware and still won't run.

No other realtime blacklist scanners are used here as they would only get in the way with MBAM being the only on demand scanner I use for testings besides uploading to Virus Total for a second opinion.

Still employ ghost images, clones and spare backup drives just in case. :D

#4
salmon

    Advanced Member

  • Honorary Members
  • PipPipPip
  • 179 posts
  • Gender:Male
  • Interests:Mainly salmon

View PostJaxryley, on Jan 5 2009, 07:53 PM, said:

Yep, I have to allow sripts globally in order to get a proper feel for malware infested sites.

FF is always run through Sandboxie whilst in Returnil mode when I go a hunting.

VM's are used if something won't run sandboxed but even then some malwares seem to be VM aware and still won't run.

No other realtime blacklist scanners are used here as they would only get in the way with MBAM being the only on demand scanner I use for testings besides uploading to Virus Total for a second opinion.

Still employ ghost images, clones and spare backup drives just in case. :excl:
Thank you now i can go hunting :D
Trojan.Salmon moving to fish tank on reboot.





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us