ida - Debugging malicious program -


i have malicious .scr file heard steals gaming account items. there way debug .scr file in safe environment without executing it. opened in ida pro did not find useful.

any pointers regarding debugging process highly appreciable.

analysis of malware risky. if committed @ least need linux host windows guest on sacrificial computer doesn't have wireless card , unplugged internet. malware has mechanism detect jail. common vms use standard drivers , checking if running in jail easy. if in jail nothing 1 line of code. make matters worse, decent malware has mechanism jailbreak vm , infect host windows. don't mention sandboxie. last, not least - malware starts revenging if try decompile it. so, instead of stolen game password might have big mess.
so, if have sacrificial computer , free time, go ahead. carefully.


Comments

Popular posts from this blog

python - mat is not a numerical tuple : openCV error -

c# - MSAA finds controls UI Automation doesn't -

wordpress - .htaccess: RewriteRule: bad flag delimiters -