Ida to reverse engineer a piece of shellcode

Assignment Help Python Programming
Reference no: EM13725440

Requirements

  • Use IDA to reverse engineer a piece of shellcode

Complete the following by writing a thorough report on the actions you took and the assumptions you made.

You are a Malware Investigator at 0xC0ff33, Inc and an incident responder came across injected shellcode during an investigation. He has done all he can in IDA and has passed on the .idb file to you. Figure out what the purpose of the malware was and how it achieved its goals.

The IDA Database file and Python script for ROR13 are located here.

Lab will be graded on the following criteria

  • Discovered what API functions were used
  • Discovered how the API functions were resolved and what hash cipher was used
  • What the malware created on the system
  • How the malware traversed the PEB
  • How the malware traversed the PE

Reference no: EM13725440

Questions Cloud

Desperate need of cash and turn : You are in desperate need of cash and turn to your uncle, who has offered to lend you some money. You decide to borrow $1,360 and agree to pay back $1,620 in two years. What interest rate is your uncle charging you?
Prepare a presentation on the information for whole foods : Basic power point presentation on the following information for Whole Foods
Debt must be repaid in two equal instalments : Digital Organics (DO) has the opportunity to invest $0.98 million now (t = 0) and expects after-tax returns of $580,000 in t = 1 and $680,000 in t = 2. The project will last for two years only. The appropriate cost of capital is 14% with all-equity f..
Make another deposit into the account : Boretti has $400,000 in a stock fund. The fund pays a 10% return, compounded annually. If he does not make another deposit into the account, how long will it take for the account to increase to $2 million?
Ida to reverse engineer a piece of shellcode : You are a Malware Investigator at 0xC0ff33, Inc and an incident responder came across injected shellcode during an investigation. He has done all he can in IDA and has passed on the .idb file to you. Figure out what the purpose of the malware was ..
Solvability factors involved in the investigation process : In a minimum 200 word response describe the solvability factors involved in the investigation process of a crime. Does this help the investigative officer with guidelines for solving a crime? Explain your answer.
Latest information concerning issues and trends : In this module you will prepare a report that discusses the pricing and distribution strategies. Research the following topics for the latest information concerning issues, trends, and potential impact to your client and relate them to the concept..
Absorb the risk by plowing back the capital surplus : If a firm that CANNOT issue new equity grows at a rate higher than SGR, which of the following MUST be true? They can absorb the risk by plowing back the Capital Surplus. Trick question: a firm cannot grow at a rate higher than SGR
Non-productive activities : The Rand Corporation believed that most of detective work was spent on non-productive activities. In a minimum 200 word response argue for or against the Rand model of either the police taking on more investigative work (from detectives) or less i..

Reviews

Write a Review

Python Programming Questions & Answers

  You are tasked with improving the code for the haunted

you are tasked with improving the code for the haunted house game. please read the associated hand-out and the code

  The integers should be printed in order with addresses

The integers should be printed in order with addresses from main. When the steps of the function order have been completed the smallest value will be stored in a, the middle in b, and the largest in c.

  Aussie best car abcdeclares that based on its yearly sales

aussie best car abcdeclares that based on its yearly sales it will award a bonus as follows. the bonus will be equally

  Python journeyman

What are the steps YOU would recommend to a Python journeyman, from apprenticeship to guru status?

  Write a loop that counts the number of space

Write a loop that counts the number of space characters in a string. Recall that the space character is represented a

  Write a program that will open a blastn

Write a program that will open a BLASTN (nucleotide to nucleotide search) output file, parse out specific information, and produce formatted output that will be written to STDOUT

  You will define an operation on positive integers called

you will define an operation on positive integers called twiddle which consists of summing the squares of the digits of

  1 one factor that leads to a decline in biodiversity is the

1. one factor that leads to a decline in biodiversity is the introduction of non-native species. however most species

  Code for the haunted house game

Improve the game by adding more features, for example you can examine more items, more props etc. You may implement this using more lists regarding items and props, remember, you should check if the object is being carried or in the location of th..

  Create a simple and responsive gui

Please use primarily PHP or Python to solve the exercise and create a simple and responsive GUI, using HTML, CSS and JavaScript.Do not use a database.

  Question 1 research 5-8 species within one family of birds

question 1 research 5-8 species within one family of birds. be sure to use primary or very good secondary literature

  Python errors

python errors, please correct them that are located in this program,

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd