Welcome

This Blog is for Malware Researching, Reverse Engineering and System Programming

Pokas Emulator 1.1 (Cross Platform) & PokasDbg

Posted by AmrThabet on 9:02 PM
Hi everyone. Today I want to announce a new release of Pokas x86 Emulator This version support Reconstructing The Import Table and Support working on Linux about Reconstructing The Import Table: ------------------------------------- it...

Win32/Virut.A Malware Analysis Paper

Posted by AmrThabet on 3:00 PM
Hi again This time I write my first malware analysis paper with the dumped source full commented .I also add a Detection and Disinfection utility that capable of detecting the infected file with Virut.A containing the signature of the virus The link to it is here : Virut.A.r...

CodeProject: "Write your own Unpacker"

Posted by AmrThabet on 1:31 PM
Hi everyonesome people ask me why you write only about your works in the blog and I reply that this blog is named AmrThabet so it doesn't talk about anything except me :)maybe I'll create another blog with another name to post everything related to virusesOKThat's the first time I join CodeProject. I love this website very much...

Google Knol: "The Secrets of Viruses and Antiviruses"

Posted by AmrThabet on 1:13 PM
in 27/5/2009 I decided to join Google Arabic Knol to support Arabic articles so I wrote "The Secrets of Viruses and Antiviruses" They said that I should not talk technically and should everyonle could understand what I'm saying. it's the first time I write an Article in the formal shape and the first article in Arabic so it makes...

EgitMagazine Talked about me in Cairo Security Camp 2010

Posted by AmrThabet on 4:55 PM
Hi again Here EgitMagazine talked about Cairo Secuirty Camp 2010 and talk about me in this event see the link here : http://www.egitmagazine.com/2010/07/28/bluekaizens-cairo-security-camp-when-egypts-it-tsecurity-experts-meet-at-one-pla...

I become a Speaker in Cairo Security Camp 2010

Posted by AmrThabet on 4:22 PM
I have been chosen to be a speaker in Cairo Security Camp 2010 at Nile University in Cairo I talked about my Emulator in a presentation named "Pokas x86 Emulator for Generic Unpacking" I talked all...

Pokas x86 PE Emulator for Generic Unpacking

Posted by AmrThabet on 7:24 PM
I want to introduce a new application named Pokas Emulator Pokas x86 Emulator is an Application-Only emulator created for generic unpacking and testing the antivirus detection algorithms. it emulates the PE Executable Files 32-bits versions and monitor all memory writes and include many features . some of them are: 1. Has an assembler...