Analyzing malware by API calls

Credit to Author: Pieter Arntz| Date: Tue, 31 Oct 2017 18:59:11 +0000

As an alternative to reverse engineering malware that is protectively packed, we look at the option of analyzing malware by API calls to determine what a file might be up to.

Categories:

Tags:

(Read more…)

The post Analyzing malware by API calls appeared first on Malwarebytes Labs.

Read more

Using ILSpy to analyze a small adware file

Credit to Author: Pieter Arntz| Date: Thu, 05 Oct 2017 16:19:25 +0000

ILSpy is an open-source .NET assembly browser and decompiler. We demonstrate its use looking at a simple adware file.

Categories:

Tags:

(Read more…)

The post Using ILSpy to analyze a small adware file appeared first on Malwarebytes Labs.

Read more

Netflix scam warning

Credit to Author: Pieter Arntz| Date: Fri, 22 Sep 2017 17:32:46 +0000

Due to recent Netflix related phishing emails in the UK, we feel it’s important to keep an eye out for this scam and others like it.

Categories:

Tags:

(Read more…)

The post Netflix scam warning appeared first on Malwarebytes Labs.

Read more

Explained: YARA rules

Credit to Author: Pieter Arntz| Date: Fri, 15 Sep 2017 15:00:08 +0000

YARA is a tool that can be used to identify files that meet certain conditions. It is mainly in use by security researchers to classify malware.

Categories:

Tags:

(Read more…)

The post Explained: YARA rules appeared first on Malwarebytes Labs.

Read more

Explained: False positives

Credit to Author: Pieter Arntz| Date: Thu, 07 Sep 2017 15:00:21 +0000

False positives are alarms for non-specific files or behavior that is flagged as malicious, while in fact there were no bad intentions present.

Categories:

Tags:

(Read more…)

The post Explained: False positives appeared first on Malwarebytes Labs.

Read more

Facebook worries: I didn’t post that

Credit to Author: Pieter Arntz| Date: Wed, 06 Sep 2017 15:00:12 +0000

What could have happened when you find Facebook posts or messages that you didn’t post or send? And what are the actions you can take to prevent further abuse?

Categories:

Tags:

(Read more…)

The post Facebook worries: I didn’t post that appeared first on Malwarebytes Labs.

Read more

Malware vaccination tricks: blue pills or red pills

Credit to Author: Pieter Arntz| Date: Wed, 30 Aug 2017 18:00:10 +0000

Malware vaccination tricks are offered for various sorts and families of malware, but can and should we use them? What are the pros and cons? Read all about it.

Categories:

Tags:

(Read more…)

The post Malware vaccination tricks: blue pills or red pills appeared first on Malwarebytes Labs.

Read more

Explained: digital forensics

Credit to Author: Pieter Arntz| Date: Fri, 25 Aug 2017 15:30:46 +0000

Digital forensics is different from cyber-security as it deals with the problem when it’s too late for precautions. It’s the science of figuring out what happened just before and after a breach.

Categories:

Tags:

(Read more…)

The post Explained: digital forensics appeared first on Malwarebytes Labs.

Read more