- Mar 15, 2011
- 13,070
@Tony Cole: Technically its correct.
Actually there are 2 main scenarios how a sandbox-aware malware works.
1) If it detects a presence of VM/Sandbox, it will not run and instead an error for the operation shown.
2) Meanwhile the second one, drops some mechanism which the sandbox have weak point at all per Malwarebytes answer.
Actually there are 2 main scenarios how a sandbox-aware malware works.
1) If it detects a presence of VM/Sandbox, it will not run and instead an error for the operation shown.
2) Meanwhile the second one, drops some mechanism which the sandbox have weak point at all per Malwarebytes answer.