Question The question about how to properly research and check programs for possible malware

Help answer the author's question with clear explanations and useful steps.

Tomoko

Level 1
Hello guys!
Today I want to learn how correct check and research possible malware without possible damage.
Here some questions to I want have a answer:
1: what program need use for this(like process hacker, simple unlocker and etc)
2: what a best VM for this?
3: how I must work with malware and what programs need use for what situations?
Thanks in advance, I will be happy with every answer.:)
 
Hello guys!
Today I want to learn how correct check and research possible malware without possible damage.
Here some questions to I want have a answer:
1: what program need use for this(like process hacker, simple unlocker and etc)
2: what a best VM for this?
3: how I must work with malware and what programs need use for what situations?
Thanks in advance, I will be happy with every answer.:)
If you're looking for extensive malware research and analysis, I suggest you take an online course. It will be far more helpful than what we can post here. You should start with the basics (system arquitecture and process structure).
 
Upvote 0
In general, for an average home user you need the following to be safe:
  • Keep your system and software up to date.
  • Have a good secure browser with a good ad blocker, a security extension.
  • Download executables from their official websites and if you want you can check them on virustotal to be more sure they are safe.
  • Check your startup locations with a startup manager to see if there are something added you don't recognize or leftover from previously removed software.
  • Check your system with second opinion scanner in case your main security software miss something.
 
Upvote 0
Here You are a bunch of resources about testing:


Some tips:

* VMWare WorkStation or VistualBox. Keep updated clean snapshots inside the virtual machine.

* Tools: install SysInternals Suite from Microsoft Store to use: TCPView, Process Explorer and AutoRuns (enable Virusotal column checking in these 2 last tools).

* As a Second Opinion Scanners: KVRT, NPE, EmsiSoft E.K., Eset Online Scanner, MalwareBytes Free.

* Configure Your Windows folder options to display system files, hidden files and file extensions.

* Install Adobe Reader, MsOffice, Java Runtime.

* Malware usually goes to these main folders (among many others):

C:\ProgramData\
C:\Users\
C:\Users\Public Access\
C:\Users\<Your account>\
C:\Users\<Your account>\AppData\Local\
C:\Users\<Your account>\AppData\Roaming\
 
Last edited:
Upvote 0
In general, for an average home user you need the following to be safe:
  • Keep your system and software up to date.
  • Have a good secure browser with a good ad blocker, a security extension.
  • Download executables from their official websites and if you want you can check them on virustotal to be more sure they are safe.
  • Check your startup locations with a startup manager to see if there are something added you don't recognize or leftover from previously removed software.
  • Check your system with second opinion scanner in case your main security software miss something.
Thanks
 
Upvote 0
Here You are a bunch of resources about testing:


Some tips:

* VMWare WorkStation or VistualBox. Keep updated clean snapshots inside the virtual machine.

* Tools: install SysInternals Suite from Microsoft Store to use: TCPView, Process Explorer and AutoRuns (enable Virusotal column checking in these 2 last tools).

* As a Second Opinion Scanners: KVRT, NPE, EmsiSoft E.K., Eset Online Scanner, MalwareBytes Free.

* Configure Your Windows folder options to display system files, hidden files and file extensions.

* Install Adobe Reader, MsOffice, Java Runtime.

* Malware usually goes to these main folders (among many others):
Thanks too
 
Upvote 0

Recently browsing

Members who viewed this thread in the last 5 minutes

Back
Top