malzilla is a very helpful tool for us!
Posted: Sun Feb 21, 2010 10:32 pm
Howdy to the malware hunters among my good forum friends,
This sandboxed malcode analyzing tool can be downloaded from here: http://malzilla.sourceforge.net/
It is described as: "Malzilla is a tool for malware-hunters. It contains downloader/HTML browser, JavaScript interpreter based on Mozilla SpiderMonkey, some decoders for various types of encoded data (used on web sites) etc, all in order to find the download link to the malicious file".
See how it can be helpful here:
http://forum.avast.com/index.php?topic= ... 473311#new
and here:
http://forum.avast.com/index.php?topic= ... #msg473295
I used it here in combination with info from http://www.unmaskparasites.com
and Norton_Safe_Web_from_Symantec
But I think the folks here that wanna analyze some malcode script that NS has to protect us from can also use this tool to their benefit. As there is no manual online, see http://www.offensivecomputing.net/?q=node/505
some introduction to using it: http://holisticinfosec.org/toolsmith/docs/july2009.html
I like you that use it to report back your findings here about what info this intricate but helpful tool can provide for you.
Like to hear all of your comments,
luntrus
This sandboxed malcode analyzing tool can be downloaded from here: http://malzilla.sourceforge.net/
It is described as: "Malzilla is a tool for malware-hunters. It contains downloader/HTML browser, JavaScript interpreter based on Mozilla SpiderMonkey, some decoders for various types of encoded data (used on web sites) etc, all in order to find the download link to the malicious file".
See how it can be helpful here:
http://forum.avast.com/index.php?topic= ... 473311#new
and here:
http://forum.avast.com/index.php?topic= ... #msg473295
I used it here in combination with info from http://www.unmaskparasites.com
and Norton_Safe_Web_from_Symantec
But I think the folks here that wanna analyze some malcode script that NS has to protect us from can also use this tool to their benefit. As there is no manual online, see http://www.offensivecomputing.net/?q=node/505
some introduction to using it: http://holisticinfosec.org/toolsmith/docs/july2009.html
I like you that use it to report back your findings here about what info this intricate but helpful tool can provide for you.
Like to hear all of your comments,
luntrus