Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

someone please help me solve this problem please, thank you This practical will focus on chapter 8 (malware analysis), you will need copy of the

image text in transcribedimage text in transcribed

someone please help me solve this problem please, thank you

This practical will focus on chapter 8 (malware analysis), you will need copy of the malware we used in class (Webcam Shot.scr: posted on canvas). The goal of this practical is to understand how the malware execute the hacker commands which is delivered through IRC server As mentioned in class hackarmy malware support several commands such as delete, execute, disconnect, dontuseme and more (complete list in the table below) Command ?dontuseme sock4 threads info !?quit ?disconnect lexecute delete self destruct starts SOCK4 server on specified port list of threads list OS, network information stops backdoor disconnect from IRC server execute local binary deletes a specific file download file from remote server not working not working webfind64 !killprocess listprocesses In this practical our focus is going to be on two commands dontuseme and webfind64. Based on the description in the book, dontuseme will destroy the malware and webfind64 is used to download a file from the internet (or remote server) into the infected machine This practical will focus on chapter 8 (malware analysis), you will need copy of the malware we used in class (Webcam Shot.scr: posted on canvas). The goal of this practical is to understand how the malware execute the hacker commands which is delivered through IRC server As mentioned in class hackarmy malware support several commands such as delete, execute, disconnect, dontuseme and more (complete list in the table below) Command ?dontuseme sock4 threads info !?quit ?disconnect lexecute delete self destruct starts SOCK4 server on specified port list of threads list OS, network information stops backdoor disconnect from IRC server execute local binary deletes a specific file download file from remote server not working not working webfind64 !killprocess listprocesses In this practical our focus is going to be on two commands dontuseme and webfind64. Based on the description in the book, dontuseme will destroy the malware and webfind64 is used to download a file from the internet (or remote server) into the infected machine

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Database Design And SQL For DB2

Authors: James Cooper

1st Edition

1583473572, 978-1583473573

More Books

Students also viewed these Databases questions

Question

How do books become world of wonder?

Answered: 1 week ago

Question

1. Write down two or three of your greatest strengths.

Answered: 1 week ago