Welcome, Guest. Please login or register.
Did you miss your activation email?
May 24, 2013, 09:11:37 PM

Login with username, password and session length

664010 Posts
70625 Topics
145257 Members

Latest Member: Алеся

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Utilities & Services
| |-+  Comodo Programs Manager - CPM
| | |-+  Help - CPM (Moderator: Alexandru Andrei)
| | | |-+  Malware / Virus Analysis
« previous next »
Pages: [1] Go Down Print
Author Topic: Malware / Virus Analysis  (Read 2590 times)
Spork Schivago
Newbie
*
Offline Offline

Posts: 2


« on: December 30, 2011, 08:29:53 PM »

Hello.  I am interested in malware / virus analysis.  I want to know if I can use Comodo Programs Manager to monitor exactly what changes a virus makes to my system.  I will be running Comodo in a virtual machine so undoing the damage should not be a problem.  I am also taking certain precautions with my host operating system to make sure nothing gets outside.  I am just wondering if in fact Comodo Programs Manager will monitor ALL changes.  Such as DLL registration, injections, etc.   Thanks for the help and for providing a program like this for free.
Logged
Tech
Usability Study Member
Comodo's Hero
*****
Offline Offline

Posts: 3024



« Reply #1 on: December 31, 2011, 07:20:14 AM »

Well, CTM will work but it's not intended to monitor the system against malware.

Maybe you can think on:
1. "Running" the malware in a virtual environment.
2. Use the free tool http://www.toolwiz.com/products/toolwiz-time-freeze until Comodo Time Machine does not get gold. Look, some rootkit are capable to bypass Toolwiz Time Freeze also.
Logged

avast! team member
Save freeware snapshot technology of Comodo Time Machine. Vote!
Spork Schivago
Newbie
*
Offline Offline

Posts: 2


« Reply #2 on: January 02, 2012, 10:27:47 PM »

Well, CTM will work but it's not intended to monitor the system against malware.

Maybe you can think on:
1. "Running" the malware in a virtual environment.
2. Use the free tool http://www.toolwiz.com/products/toolwiz-time-freeze until Comodo Time Machine does not get gold. Look, some rootkit are capable to bypass Toolwiz Time Freeze also.

Thank you for the reply.  Sorry I haven't been able to get back to you until day, I've been busy working on a few customers computer.  I will try Toolwiz Time Freeze.  I don't think the rootkit bypassing Toolwiz Time Freeze will do any damage.  It might make it a bit harder to analyze though.  If worst comes to worst, I'll just revert to an earlier snap-shot.  Thanks.
Logged
Tags: Analysis  virus analysis  malware analysis  sandbox 
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.081 seconds with 22 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com