Noriben: free script that works with Process Monitor to summarize program activities

Discussion in 'other anti-malware software' started by MrBrian, Nov 28, 2013.

Thread Status:
Not open for further replies.
  1. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    http://www.ghettoforensics.com/2013/04/noriben-your-personal-portable-malware.html

    Video: http://www.youtube.com/watch?v=mObSfTJDm_Y

    Update: Very quick review: tried it, and really like it :thumb:.
     
    Last edited: Nov 28, 2013
  2. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    In case it isn't clear, you can change the blacklists by editing the appropriate sections of the script file itself with a text editor.

    The next version (1.6) has the ability to upload all remaining newly created files to VirusTotal, provided that you have an API key.
     
    Last edited: Nov 28, 2013
  3. mantra

    mantra Registered Member

    Joined:
    Jan 25, 2005
    Posts:
    5,153
    looks a great script
    i will give it a try
     
  4. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    Another free tool for Windows and Linux: ProcDOT:
    Review of ProcDOT.
     
  5. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,833
    @ MrBrian

    Hi, i found & posted this about 3 months ago on http://www.kernelmode.info which has had up to now 853 views. Strangely though nobody has commented on it yet ? So i'm pleased you're testing it & giving it high praises :thumb:
     
  6. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    Thanks :thumb:. I did notice your post in a web search after I found mention of Noriben in some other thread somewhere. Do you know of anything else that is similar?
     
  7. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    LogDiff

     
  8. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,833
    @ MrBrian

    I can't recall anything similar !
     
Loading...
Thread Status:
Not open for further replies.