<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>chackraview.net &#187; malware</title>
	<atom:link href="http://blog.chackraview.net/tag/malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.chackraview.net</link>
	<description>There is no such thing as closed source software…the processor sees every instruction and so does the reverse engineer…</description>
	<lastBuildDate>Fri, 03 Feb 2012 17:51:52 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Analysis of CVE-2007-0024 Exploit and its Payload</title>
		<link>http://blog.chackraview.net/2011/07/14/analysis-of-cve-2007-0024-exploit-and-its-payload/</link>
		<comments>http://blog.chackraview.net/2011/07/14/analysis-of-cve-2007-0024-exploit-and-its-payload/#comments</comments>
		<pubDate>Thu, 14 Jul 2011 17:13:31 +0000</pubDate>
		<dc:creator>Abhijeet</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Reverse Engineering]]></category>
		<category><![CDATA[CVE-2007-024]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[MS10-004]]></category>
		<category><![CDATA[PWS:Win32/OnLineGames.KN]]></category>
		<category><![CDATA[Trojan:Win32/Sistyserav.A]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=741</guid>
		<description><![CDATA[CVE-2007-0024 is quite old and you might think, there would be no more active exploitation of this vulnerability as it was patched long back. I will say, think again. Today, I analyzed live attack while exploiting above vulnerability. Here is the gist of my analysis. Overview of CVE-2007-0024: An Integer overflow in the Vector Markup [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2011/07/14/analysis-of-cve-2007-0024-exploit-and-its-payload/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Alternate Data Streams (ADS)</title>
		<link>http://blog.chackraview.net/2010/01/14/alternate-data-streams-ads-2/</link>
		<comments>http://blog.chackraview.net/2010/01/14/alternate-data-streams-ads-2/#comments</comments>
		<pubDate>Thu, 14 Jan 2010 22:45:25 +0000</pubDate>
		<dc:creator>bughira</dc:creator>
				<category><![CDATA[HOWTO's]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Malware Techniques]]></category>
		<category><![CDATA[ADS]]></category>
		<category><![CDATA[Alternate Data Streams]]></category>
		<category><![CDATA[Hidden Files]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[NTFS]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=535</guid>
		<description><![CDATA[With the introduction of NTFS file system in Windows NT, Microsoft introduced new concept of having multiple streams into single file known as Alternate Data Streams (ADS). In this blog i will discuss some advantages and disadvantages of ADS. Whenever we perform any operations on any file like &#8211; reading, writing, editing etc, we did [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2010/01/14/alternate-data-streams-ads-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Analyzing W32.Imait.As and W32.Virut Malware</title>
		<link>http://blog.chackraview.net/2009/11/28/analyzing-w32-imait-as-and-w32-virut-malware/</link>
		<comments>http://blog.chackraview.net/2009/11/28/analyzing-w32-imait-as-and-w32-virut-malware/#comments</comments>
		<pubDate>Sat, 28 Nov 2009 22:02:11 +0000</pubDate>
		<dc:creator>Abhijeet</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[Reverse Engineering]]></category>
		<category><![CDATA[anti malware]]></category>
		<category><![CDATA[anti virus]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[viruses]]></category>
		<category><![CDATA[W32.Imait.As]]></category>
		<category><![CDATA[W32.Virut]]></category>
		<category><![CDATA[win32 virut nbk]]></category>

		<guid isPermaLink="false">http://blog.chackraview.net/?p=402</guid>
		<description><![CDATA[Today, I was sitting in a dark room  self-evaluating about some things I did in past couple of months. And I realized my JOB is making me a lazy ass. It’s been a long time since I analyzed any malicious binary. So  I decided to  pick up a random old malware sample from my 320 [...]]]></description>
		<wfw:commentRss>http://blog.chackraview.net/2009/11/28/analyzing-w32-imait-as-and-w32-virut-malware/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
	</channel>
</rss>

