REMnux

REMnux is a freeware command line-based utility for conducting malware analysis. Developed and maintained by Lenny Zeltser, REMnux has a variety of tools that allow analysts to examine suspicious documents, JavaScript, and other artifacts associated with malware. Further, there are tools such as Wireshark that can be utilized to not only analyze the malware but to identify network connections or traffic.

Information on REMnux is located on the site https://remnux.org/and can be downloaded in an OVA file format from https://docs.google.com/uc?id=0B6fULLT_NpxMampUWlBCQXVJZzA&export=download.

Once downloaded, the file can be converted by the analyst's selected virtualization software. On the desktop are two links to .html files, and ...

Get Digital Forensics and Incident Response - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.