Author Topic: Zero Wine  (Read 266 times)

0 Members and 1 Guest are viewing this topic.

Online Axon

  • 0x1337
  • *****
  • Posts: 511
  • Karma: +49/-11
    • View Profile
Zero Wine
« on: January 26, 2012, 03:15:17 PM »
Zero wine is an open source (GPL v2) research project to dynamically analyze the behavior of malware. Zero wine just runs the malware using WINE in a safe virtual sandbox (in an isolated environment) collecting information about the APIs called by the program.
The output generated by wine (using the debug environment variable WINEDEBUG) are the API calls used by the malware (and the values used by it, of course). With this information, analyzing malware's behavior turns out to be very easy.
















http://zerowine.sourceforge.net/

 



Intern0t SoldierX py1337 SecurityOverride programisiai
Want to be here? Contact Ande or Satan911 on the forum or at IRC.