Könyv Network Virtualisation Helmut Petritsch

Network Virtualisation

Virtualising Network Traffic in Windows XP for Dynamic Malware Analysis

Szerző: Helmut Petritsch
Nyelv: Angol
Kötés: Puha kötésű
Elérhetőség: Beszállítói készleten
Küldés 9-15 napon belül
19 050 Ft
Could dynamic Malware analysis be more dynamic by §assigning network calls an injected result, defin...

Információk a könyvről

Nyelv
Angol
Kötés
Könyv - Puha kötésű
Kiadva
2008
oldal
92
EAN
9783836469197
ISBN
3836469197
Enbook ID
07046995
Súly
136
Méretek
152 x 229 x 5

Teljes leírás

Could dynamic Malware analysis be more dynamic by §assigning network calls an injected result, defined §by the analysis process? Yes, but only if the §network access was completely virtualised. This book §explains how this virtualisation could be achieved. §It starts with an instruction of dynamic Malware §analysis and the usage of sockets in the Windows §operating system. By using Qemu and TTAnalyze (a §tool for dynamic Malware analysis), it describes how §network access could be virtualised, so that system §calls relating to sockets (and therefore accessing §the network) are intercepted at the system call §gate, then manipulated and imitated for a dynamic §analysis. The book also defines the most important §synchronisation techniques of multi-threaded §applications for their (network) activities. The §reader will gain a thorough understanding, of how §high level functions of the Winsock library are §executed with the aim of system calls. Could dynamic Malware analysis be more dynamic by assigning network calls an injected result, defined by the analysis process? Yes, but only if the network access was completely virtualised. This book explains how this virtualisation could be achieved. It starts with an instruction of dynamic Malware analysis and the usage of sockets in the Windows operating system. By using Qemu and TTAnalyze (a tool for dynamic Malware analysis), it describes how network access could be virtualised, so that system calls relating to sockets (and therefore accessing the network) are intercepted at the system call gate, then manipulated and imitated for a dynamic analysis. The book also defines the most important synchronisation techniques of multi-threaded applications for their (network) activities. The reader will gain a thorough understanding, of how high level functions of the Winsock library are executed with the aim of system calls.

Érdekelheti

5 394 Ft

Bully

A J Kirby
5 452 Ft

Quiet Time To Pray

Pamela D Spencer Smith
10 120 Ft

Legacy of Menace

Bobby Teale
6 602 Ft
7 511 Ft

Palm Beach, Finland

Antti Tuomainen
3 621 Ft

NationEUrope

Caroline Y. Robertson-Von Trotha
18 226 Ft
103 315 Ft
101 686 Ft
7 421 Ft
95 410 Ft
29 721 Ft

Azok a vásárlók, akik ezt a könyvet megvásárolták, a következőket is megvásárolták

3 648 Ft

Indiavai Ulukkiya Oozhalgal

Savukku Sankar / சவு&#
6 826 Ft

Meccanica dei materiali

Vincenzo De Luca
5 949 Ft
3 491 Ft
11 767 Ft

I Feel Shy: Me Siento Tímido

Abel Junior Tutagalevao
5 846 Ft

Fragments de Geo

Amael Cattaruzza
6 727 Ft

Disfigured Night

The Residents
5 779 Ft

Internetagenturen

Anja Schneider
3 433 Ft

Karikatur im 1. Weltkrieg

Ernst Schulz-Besser
6 741 Ft

Weckrufe

Stefan Knobloch
9 695 Ft