Zero Wine

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
I use firefox with zerowine. Not firefox on the image, but the firefox on my linux box running qemu.

Norman and CWSandbox are nice. And expensive. :p
Anubis might be another alternative. Saw it mentioned somewhere, haven't really checked it out though.
 

Cellulose

Senior member
May 14, 2007
360
0
76
Ah, I didn't realize that you were meant to use the browser on the machine running qemu - thanks :p

I'll have a look at those alternatives as well.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Cellulose
Ah, I didn't realize that you were meant to use the browser on the machine running qemu - thanks :p

I'll have a look at those alternatives as well.

Documentation for zerowine is pretty lacking (which is common with such a new project). Reading through some of the help messages for it on sourceforge was pretty helpful.

Looking at Anubis it just looks like you can submit your binary to them, not run their software. (http://anubis.iseclab.org/index.php?action=home)

I think CWSandbox supports analyzing PDFs, but it's expensive. :(
 

Schadenfroh

Elite Member
Mar 8, 2003
38,416
4
0
I wrote my senior thesis on detecting malicious software with WINE (although the analysis process likely differs greatly). I was unaware that this even existed. Glad my prospectus predates that project's announcement.