Flag: Tornado! Hurricane!

 Forums >>  Brainstorms - General  >>  Automated Static Malware Analysis with Pythonect

Topic created on: August 22, 2012 01:37 CDT by izik .

Hi All,

I wanted to share with you a post I wrote about how to automate static malware analysis with Pythonect:

http://blog.ikotler.org/2012/08/automated-static-malware-analysis-with.html

Pythonect is a new, experimental, general-purpose dataflow programming language based on Python.

In this post I explain the benefits of using dataflow programming in research and analysis of malware.

Additionally I have provided some examples: computing MD5 and SHA1 digests, searching for all the INT 3 instructions occurrences, and Shannon's entropy calculation.

I'd appreciate any feedback you can give me on the content.

  NickyBlue     October 4, 2012 00:16.18 CDT
Can you just write those garbage tutorials or can write some code as well ;)

If yes and have some understanding of assembly language join me at "Fully Automated VirusBusterKit: A hype or Reality"

An yes forget this python thing of yours for some time. You got to be roman to deal with roman.

wait for you there :)

DarkAvenger

Note: Registration is required to post to the forums.

There are 29,890 total registered users.


Recently Created Topics
Decompiling raw bina...
May/22
Incorrect bitness wh...
May/20
PaiMei stalker modul...
May/19
Attach to program us...
May/13
IDA PRO how to make ...
May/12
FACT: OpenRCE is dead.
May/08
Int 3 anti debug?
May/05
help needed - Beginn...
May/03
Attaching IDA Pro to...
Apr/27
File type
Apr/21


Recent Forum Posts
Ollydbg 2.0 - Plugin...
openrce...
IDA PRO how to make ...
codeinject
FACT: OpenRCE is dead.
codeinject
IDA Resource Viewer ...
r2x64
FACT: OpenRCE is dead.
djnemo
FACT: OpenRCE is dead.
codeinject
FACT: OpenRCE is dead.
pedram
help needed - Beginn...
araujo
Attaching IDA Pro to...
codeinject
Int 3 anti debug?
codeinject


Recent Blog Entries
nfljerseysmart
May/23


nfljerseysmart
May/23


laangels
May/22
The Reason You Need A Mark ...

laangels
May/22
Buy Albert Pujols Jersey an...

lowpriority
Apr/13
OllyMigrate Plugin for Olly...

More ...


Recent Blog Comments
clarisonic on:
Apr/03
New version of Ollydbg!

clarisonic on:
Apr/03
New version of Ollydbg!

trackerx90 on:
Mar/04
SuppressDebugMsg As Anti-De...

coachfactory on:
Feb/25
Portable Executable Format ...

coachfactory on:
Feb/25
A new Anti-Olly trick.

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit