Книга Network Virtualisation Helmut Petritsch

Network Virtualisation

Virtualising Network Traffic in Windows XP for Dynamic Malware Analysis

Автор: Helmut Petritsch
Език: Английски език
Корици: С меки корици
Издател: VDM Verlag Dr. Mueller E.K.
Наличност: Външен склад
Изпращаме след 9-15 дни
49.86 97.52 лв
Could dynamic Malware analysis be more dynamic by §assigning network calls an injected result, defin...

Информация за книгата

Автор
Език
Английски език
Корици
Книга - С меки корици
Издадена
2008
страници
92
EAN
9783836469197
ISBN
3836469197
Enbook ID
07046995
Теглоt
136
Размери
152 x 229 x 5

Пълно описание

Could dynamic Malware analysis be more dynamic by §assigning network calls an injected result, defined §by the analysis process? Yes, but only if the §network access was completely virtualised. This book §explains how this virtualisation could be achieved. §It starts with an instruction of dynamic Malware §analysis and the usage of sockets in the Windows §operating system. By using Qemu and TTAnalyze (a §tool for dynamic Malware analysis), it describes how §network access could be virtualised, so that system §calls relating to sockets (and therefore accessing §the network) are intercepted at the system call §gate, then manipulated and imitated for a dynamic §analysis. The book also defines the most important §synchronisation techniques of multi-threaded §applications for their (network) activities. The §reader will gain a thorough understanding, of how §high level functions of the Winsock library are §executed with the aim of system calls. Could dynamic Malware analysis be more dynamic by assigning network calls an injected result, defined by the analysis process? Yes, but only if the network access was completely virtualised. This book explains how this virtualisation could be achieved. It starts with an instruction of dynamic Malware analysis and the usage of sockets in the Windows operating system. By using Qemu and TTAnalyze (a tool for dynamic Malware analysis), it describes how network access could be virtualised, so that system calls relating to sockets (and therefore accessing the network) are intercepted at the system call gate, then manipulated and imitated for a dynamic analysis. The book also defines the most important synchronisation techniques of multi-threaded applications for their (network) activities. The reader will gain a thorough understanding, of how high level functions of the Winsock library are executed with the aim of system calls.

Може също да ви хареса

10.02 19.59 лв
13.83 27.04 лв

Bully

A J Kirby
15.38 30.08 лв

Quiet Time To Pray

Pamela D Spencer Smith
26.66 52.14 лв

Legacy of Menace

Bobby Teale
18.64 36.45 лв
11.97 23.42 лв
19.64 38.41 лв
241.21 471.77 лв

Palm Beach, Finland

Antti Tuomainen
10.22 19.99 лв

NationEUrope

Caroline Y. Robertson-Von Trotha
53.92 105.46 лв
136.47 266.91 лв
17.84 34.89 лв
7.71 15.09 лв
16.53 32.34 лв
296.64 580.18 лв
267.98 524.12 лв
21.45 41.94 лв
262.36 513.14 лв
87.50 171.14 лв

Клиенти, които купиха тази книга, купиха също

10.87 21.26 лв

Indiavai Ulukkiya Oozhalgal

Savukku Sankar / சவு&#
17.84 34.89 лв

Meccanica dei materiali

Vincenzo De Luca
17.64 34.49 лв
9.52 18.61 лв
30.22 59.10 лв
31.52 61.65 лв

I Feel Shy: Me Siento Tímido

Abel Junior Tutagalevao
15.23 29.79 лв

Fragments de Geo

Amael Cattaruzza
19.84 38.81 лв
14.13 27.63 лв

Disfigured Night

The Residents
16.28 31.85 лв

Internetagenturen

Anja Schneider
9.37 18.32 лв

Karikatur im 1. Weltkrieg

Ernst Schulz-Besser
18.44 36.06 лв
50.91 99.58 лв

Weckrufe

Stefan Knobloch
26.46 51.75 лв
99.18 193.98 лв