Noriben: free script that works with Process Monitor to summarize program activities

Discussion in 'other anti-malware software' started by MrBrian, Nov 28, 2013.

Thread Status:
Not open for further replies.
  1. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    http://www.ghettoforensics.com/2013/04/noriben-your-personal-portable-malware.html

    Video: http://www.youtube.com/watch?v=mObSfTJDm_Y

    Update: Very quick review: tried it, and really like it :thumb:.
     
    Last edited: Nov 28, 2013
  2. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    In case it isn't clear, you can change the blacklists by editing the appropriate sections of the script file itself with a text editor.

    The next version (1.6) has the ability to upload all remaining newly created files to VirusTotal, provided that you have an API key.
     
    Last edited: Nov 28, 2013
  3. mantra

    mantra Registered Member

    Joined:
    Jan 25, 2005
    Posts:
    6,166
    looks a great script
    i will give it a try
     
  4. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    Another free tool for Windows and Linux: ProcDOT:
    Review of ProcDOT.
     
  5. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
    @ MrBrian

    Hi, i found & posted this about 3 months ago on http://www.kernelmode.info which has had up to now 853 views. Strangely though nobody has commented on it yet ? So i'm pleased you're testing it & giving it high praises :thumb:
     
  6. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    Thanks :thumb:. I did notice your post in a web search after I found mention of Noriben in some other thread somewhere. Do you know of anything else that is similar?
     
  7. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    LogDiff

     
  8. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
    @ MrBrian

    I can't recall anything similar !
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.