Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 22 guests and 2 members online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Malwarearrow Malware As Art
Ethical Hacker Community Forums
November 23, 2008, 02:42:28 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2-Day Ethical Hacking Conference with MS Blue Hats Oct 31 - Nov 1. Tickets Only $100! www.chicagocon.com/content/view/103/51/
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Malware As Art  (Read 2100 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 2347


Editor-In-Chief


View Profile WWW
« on: April 02, 2008, 10:36:55 AM »

Check out Alex Dragulescu's site for some very interesting ways of visualizing malware:

http://www.sq.ro

Also, read the right-up in PC Magazine:

Quote
What does a computer virus look like, really?

No one really know for sure. But a partnership between security services provider MessageLabs and artist Alex Dragulescu has provided one answer.

Dragulescu, a Romanian-born artist who first made his name by designing so-called so-called "spam plants," moved on to modeling viruses, worms, and phishing attempts late last year, at the behest of MessageLabs. With the spam, Draglescu took actual spam emails, stripped them down to their basic text, header, and URL information, and looked for relationships that he could exploit artistically using his own algorithms. The idea was to create something more aesthetically pleasing.

For MessageLabs, what Dragulescu saw as art the company saw as a more useful tool. To develop antivirus signatures, both Draglescu and MessageLabs' security researches have to break malware code down to understand it: where it attacks, what it writes or copies, and where it sends any stolen information. The company approached the artist and asked him to apply his craft to some of the more prevalent malware.

"What we thought was so interesting is that the security industry for more than 10 years has taken the same approach with threats, such as malware or spyware, that we intercept on a daily basis," said Paul Wood, a senior analyst at MessageLabs.

What Dragulescu came up with mimics the biological appearance of a virus, but is interpreted through the artists' rules: a virus is green, spam is reddish, phishing emails are blue, a Trojan is pink, spyware is purple, and a blue-green object is simply a malicious link. Other characteristics, such as the tendrils of the virus, are determined by attributes such as the number of connections it makes, Wood said.

http://www.pcmag.com/article2/0,2817,2280416,00.asp

Kewl stuff,
Don
Logged

CISSP, MCSE, CEH, Security+ SME
RoleReversal
Sr. Member
****
Offline Offline

Posts: 457


View Profile WWW
« Reply #1 on: April 02, 2008, 10:47:56 AM »

Don,

that really is quite cool, I'd forgotted about the spam-plants. Guess we'll have to see if Storm is pretty though.

<update>
I stand correct, images have already been created for malware strains. Stormy can be found here http://www.sq.ro/viewer.php?i=125
</update>

Hopefully this will generate some useful tools and techniques as opposed to just pretty pictures. Could be interesting to see if we can start spotting malware files depending on what they look like. Might put a few of us out of work though....
« Last Edit: April 02, 2008, 10:51:06 AM by RoleReversal » Logged

A little bit of sanity:
http://www.infosanity.co.uk
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.084 seconds with 23 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
During the most recent election, I:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

Sadikhov.com
Top IT Cert Sites

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2008 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.