官术网_书友最值得收藏!

How to do it...

Once your Cuckoo Sandbox is set up, and has a web interface running, follow these steps to gather runtime information about a sample:

  1. Open up your web interface (the default location is 127.0.0.1:8000), click SUBMIT A FILE FOR ANALYSIS, and select the sample you wish to analyze:
  1. The following screen will appear automatically. In it, select the type of analysis you wish to perform on your sample:
  1. Click Analyze to analyze the sample in your sandbox. The result should look as follows:
  1. Next, open up the report for the sample you have analyzed:
  1. Select the Behavioral Analysis tab:

The displayed sequence of API calls, registry key changes, and other events can all be used as input to a classifier.

主站蜘蛛池模板: 华亭县| 禹城市| 高雄市| 石台县| 久治县| 安溪县| 东乡族自治县| 温宿县| 喜德县| 宝清县| 石屏县| 平阴县| 共和县| 道真| 修武县| 东丽区| 枣庄市| 荥经县| 浮山县| 五大连池市| 罗江县| 鄂温| 财经| 霍州市| 肥乡县| 静海县| 涞水县| 扎赉特旗| 金溪县| 富顺县| 兴海县| 桃江县| 石门县| 南通市| 沁源县| 武穴市| 兴宁市| 义马市| 山东| 谢通门县| 田东县|