官术网_书友最值得收藏!

How to do it...

Once your Cuckoo Sandbox is set up, and has a web interface running, follow these steps to gather runtime information about a sample:

  1. Open up your web interface (the default location is 127.0.0.1:8000), click SUBMIT A FILE FOR ANALYSIS, and select the sample you wish to analyze:
  1. The following screen will appear automatically. In it, select the type of analysis you wish to perform on your sample:
  1. Click Analyze to analyze the sample in your sandbox. The result should look as follows:
  1. Next, open up the report for the sample you have analyzed:
  1. Select the Behavioral Analysis tab:

The displayed sequence of API calls, registry key changes, and other events can all be used as input to a classifier.

主站蜘蛛池模板: 恩施市| 阿合奇县| 大关县| 新疆| 英山县| 阿拉善左旗| 洞头县| 双桥区| 英超| 博罗县| 怀集县| 揭阳市| 灵寿县| 吴川市| 亚东县| 平谷区| 宣城市| 江源县| 日土县| 五大连池市| 开化县| 新竹市| 静宁县| 宝清县| 页游| 龙山县| 陕西省| 阿荣旗| 闽清县| 嵊州市| 贺州市| 盐津县| 田东县| 义乌市| 天津市| 龙里县| 方正县| 神农架林区| 深圳市| 清徐县| 河北区|