Jump to content

Search the Community

Showing results for tags 'sandbox'.



More search options

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes 3 Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

Found 3 results

  1. Hey there, I'm trying to build a home sandbox for learning and filtering processes. I'm using Python to run files into a VM, open them there for behavioral analysis and scan and then pass on to the network. I was hoping to use Malwarebytes inside the VM to do a prescan of the file (having the python script run it silently) and then also collect the logs from the background running MBAM process for behavioral analysis. And while the latter part is doable (more or less, cause if it finds something, it'll pop up the GUI and I only need the logs), the former is now apparently not. Do you and when do you expect the mbamapi or the old CLI features to return to the home version of your excellent product?
  2. I understand there's tricks/exploits certain malware use to fool the user who is running an infected application sandboxed that it is safe. But how does it do that? I recently came across a file I scanned in an online sandbox which upon execution, launched 2 RATs that installed themselves along with adware applications that bombed the sandbox with downloads to millions of ads. I know developers can 1. Put out a fake warning to make it seem like the application errored and nothing malicious has launched 2. Use exploits to break out of the sandbox and infect the PC(rarely seen this myself) Knowing that, is there any way for them to detect a online sandbox? It seems to me that the online sandbox is fool-proof because it just works so perfectly and everytime sandboxie launched no malware, the online sandbox would show me that it actually did launch something else along with saying that it tried to detect the sandbox using a certain method. In conclusion, what methods does malware use to detect VMs/sandboxes(VMs is kind of easy to figure out) and is there a way for the developers to fool online sandboxes. Im talking about professional malware developers not script kiddies with RATs.
  3. I'll cut to the chase. I recently started up both Opera and Chrome (latest versions) to find them showing a blank screen. Troubleshooted this on the web and got both working using the '-no-sandbox' flag. Dig some more digging and it seemed to be linked to security software, so after testing I discovered the blank screen shows up whenever MBAM's Exploit Protection module is enabled. Disable this - or switch off protection for those two apps under 'Manage Protected Applications' - and both apps launch with no problem. Has anyone else encountered this, or is it just me? Thanks for any input you can give. Platform: Windows 10 MBAM version: 3.0.6.1469, Component package version: 1.0.96, Update package version: 1.0.1673
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.