-
July 6th, 2010, 09:03 PM #1
Discussion on isolating an install and then analyzing the results
I have a possibly infected, custom "multi-installer" application, that I use on new builds.
It consists of a package containing freeware games, and it installs them as a batch and auto-creates icons.
I didn't create this but someone I trust did...
He hasn't had any issues using it, but lately when I've installed it on clients PC's, they end up getting various versions of scareware infestations.
It was on a USB thumbdrive that has been used hundreds of times to install security software and fixes for "compromised" machines so I'm guessing that is how this install has been corrupted.
What I'm asking is...
What are your suggestions for using a "sandbox" style install and then monitoring what its actually doing.
Has anyone done this sort of thing, and what did they use?
This could be helpful in many other instances as well.
-
July 7th, 2010, 01:50 PM #2
Hmm no replies yet, I was actually wondering if there was an easier way than what I was going to suggest.
What I usually do for software testing is run an install via either a VM (virtual box mainly) or a secondary HDD that can be sandboxed. If I use the 2nd HDD I simply disable the other drives in the machine from the bios so there is no chance of cross infection. Then for monitoring use sysinternals, process monitor and reg monitor.
Probably not the easiest way to go but it gives you a pretty good idea of what's going on. I've heard of a few pieces of software like InCtrl5, WhatChanged and InstallRite but most of those are older and not updated so I haven't tested them out.
TechIMO Folding@home Team #111 - Crunching for the cure!
“Because The People Who Are Crazy Enough To Think They Can Change The World, Are The Ones Who Do.”
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Similar Threads
-
For You Who Are Such Financial Wizards Analyzing Goldman Sachs...
By Chuckiechan in forum DebateIMO: Politics, Religion, ControversyReplies: 19Last Post: September 14th, 2010, 11:57 PM -
Isolating bad sectors on portabledisk/musicplayer
By Flav_cool in forum Technical SupportReplies: 2Last Post: December 9th, 2006, 12:42 PM -
Help needed in analyzing the specs of this supposedly "gaming PC"
By Mave Datthews in forum General Tech DiscussionReplies: 13Last Post: November 21st, 2004, 10:49 AM -
pc analyzing software
By VERT in forum General Tech DiscussionReplies: 9Last Post: April 1st, 2003, 07:17 PM -
Analyzing Network stays on forever
By nodnerb2 in forum Distributed ComputingReplies: 2Last Post: September 1st, 2002, 06:08 PM



LinkBack URL
About LinkBacks




Reply With Quote

Watch Star Trek Into Darkness Online. After the crew of the Enterprise find an unstoppable force of terror from within their own organization, Captain Kirk leads a manhunt to a war-zone world to...
Watch black rock online