“安全安家已经专为逆向解析恶意软件开发了一款分拆式Ubuntu发行。这款名为REMnux的操作系统包含许多流行的恶意软件分析、网络监
控、内存检查等工具,形成了一个强大的恶意软件代码解析平台。
"Many security professionals who find themselves
needing to analyze a specific piece of malware end up in a difficult
situation. The classic approach to analyzing malware is to set up a
virtual machine on a PC specifically designed for that purpose and then
let the malware loose and see what it does. But that usually only shows
you part of the picture; much of the malware's behavior can remain
hidden without the ability to do some deeper analysis.
“过去很多发现自己需要对恶意软件的一块特定代码进行分析的安全安家最后都会身处困境。传统的分析恶意软件的方法是在专供此类活动的PC上设置
一个虚拟机,让恶意软件自由运行,看它做些什么。但它经常只是展示出了部分画面;恶意软件还有很多行为不经深入分析仍很难发现。
"And that's exactly what REMnux is designed to do.
The OS is a lightweight version of Ubuntu that is distributed as a
VMware virtual machine. It can be booted via several VMware products, or
through X-Windows."
“这也就是REMnux被设计出来的原因。这款操作系统是一个轻量级的Ubuntu版本,作为一个虚拟机软件发行。它可以在多种虚拟机平台上启
动,或通过X-Windows启动。
注:英文原文还有更多详细报告。如有进一步翻译需要,请留言或发Email给版主。
英文原文:http://www.linuxtoday.com/news_story. ...
n=2010-07-12-005-35-NW-RL 转载请注明:Linux人社区编译 |