!!BlackStar!!
18-12-2010, 09:07 PM
http://www.samysoft.net/forumim/basmla/hjlhjkl.gif
http://www.samysoft.net/forumim/slam/8052.gif
اليوم إن شاء الله بنستخدم المواقع لفحص الملفات المشبوهة
و سيكون الموضوع مقسم إلى 3 أجزاء
الأول: الفحص على موقع virus total
الثاني : تحليل الملفات المشبوهة باستخدام أداة Threat Expert
الثالث: فحص الملفات المشبوهة على موقع anubis
http://www.samysoft.net/forumim/fwasel/1/fgfdgdfg.gif
الأول
الفحص على موقع virus total
الرابط
VirusTotal (http://www.virustotal.com/)
طريقة الفحص
http://www.3asq.net/uploads/cec9559ab8.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/a66183b332.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/03ca9c1e27.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/c64d4a0766.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/0299c695fe.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
فحص الروابط
http://www.3asq.net/uploads/120235587d.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/cd7a9706de.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/9090484846.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.samysoft.net/forumim/fwasel/1/fgfdgdfg.gif
http://www.3asq.net/uploads/ab5efc3c66.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
لماذا اخترنا VirusTotal من غيره من المواقع؟؟
1-يفحص على 42 برنامج حماية من بينها البرامج القوية
2-يرسل قيم لبرامج الحماية
3-يخشى المخترقون منه لأنه يرسل القيم فينكشف الباتش بعد شقاء التشفير
http://www.samysoft.net/forumim/slam/8052.gif
اليوم إن شاء الله بنستخدم المواقع لفحص الملفات المشبوهة
و سيكون الموضوع مقسم إلى 3 أجزاء
الأول: الفحص على موقع virus total
الثاني : تحليل الملفات المشبوهة باستخدام أداة Threat Expert
الثالث: فحص الملفات المشبوهة على موقع anubis
http://www.samysoft.net/forumim/fwasel/1/fgfdgdfg.gif
الأول
الفحص على موقع virus total
الرابط
VirusTotal (http://www.virustotal.com/)
طريقة الفحص
http://www.3asq.net/uploads/cec9559ab8.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/a66183b332.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/03ca9c1e27.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/c64d4a0766.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/0299c695fe.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
فحص الروابط
http://www.3asq.net/uploads/120235587d.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/cd7a9706de.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.3asq.net/uploads/9090484846.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
http://www.samysoft.net/forumim/fwasel/1/fgfdgdfg.gif
http://www.3asq.net/uploads/ab5efc3c66.png (http://www.3asq.com/3asq.php?url=%68%74%74%70%3a%2f%2f%33%61%73%71%2e% 63%6f%6d%2f%33%61%73%71%2e%70%68%70%3f%75%72%6c%3d %25%36%38%25%37%34%25%37%34%25%37%30%25%33%61%25%3 2%66%25%32%66%25%37%37%25%37%37%25%37%37%25%32%65% 25%33%33%25%36%31%25%37%33%25%37%31%25%32%65%25%36 %65%25%36%35%25%37%34%25%32%66)
لماذا اخترنا VirusTotal من غيره من المواقع؟؟
1-يفحص على 42 برنامج حماية من بينها البرامج القوية
2-يرسل قيم لبرامج الحماية
3-يخشى المخترقون منه لأنه يرسل القيم فينكشف الباتش بعد شقاء التشفير