Return Styles: Pseud0ch, Terminal, Valhalla, NES, Geocities, Blue Moon.

Pages: 1-

Tracerooting internet protocols with VB6

Name: Computer Pseudoscience 2009-10-17 18:38

I tried asking this on /prog/, but I forgot they only know Stallman memes, hot stripping coeds, and the essentials of LISP.

Virtual machines suck for running malware (timing tests, little holes left for the guest to talk to the hypervisor, device strings, etc.).  I want to automate the task of getting a physical box up with a fresh disk image to boot up on.  It's not really going to be used as a honeypot, but as a shitbox for running botnet executables (most of these will immediately kill themselves in typicals VMs... vmware is absolutely useless in this respect).

It seems that network booting is the most natural option, but I'm wondering if anything slightly lower-tech (that doesn't involve me getting off my fat ass to put in a CD or something) exists.  I don't think any of my current boxes support network booting in the BIOS, but I'll build one if it's the best idea.

In either case, the second firewall box that this malware box sits behind is going to have some other duties (namely, turning off the malware box... probably with a hack to directly wire it to the power switch on malware box's motherboard).  And, of course, if network booting is used, then the firewall box can host the image(s).

In the end, it'll be as easy as booting/restoring a virtual machine, but without the nice parallelism thing.

I'm curious as to how /comp/ would approach this!

Name: Anonymous 2009-10-17 18:39

Oh god, I noko'd.

Name: Anonymous 2009-10-18 19:06

What I would do is put in two hard drives (preferably with a write protect jumper), install a minimal Linux on one of them and set it up to dual boot. Do your target OS install the way you want it on the other drive, boot back into Linux and make a disk image using dd and script it to automatically re-image the second drive on boot. You could even have it reboot to the target OS after the image is finished.

Name: UGGS Classic Tall 2009-11-09 4:00

<a href="http://www.sweatboots.com/ugg-knightsbridge-c-358.html"><strong>Uggs
Store</strong></a> Show Cheap UGG Boots,UGG Shoes.Special In <a
href="http://www.sweatboots.com/uggs-classic-tall-c-3.html"><strong>UGGS Classic
Tall</strong></a>,<strong><a href="http://www.sweatboots.com/ugg-knightsbridge-c
-358.html">UGG Knightsbridge</a></strong>, <a
href="http://www.sweatboots.com/uggs-classic-cardy-c-18.html"><strong>Cardy UGG
Boots</strong></a>,<a href="http://www.sweatboots.com/ugg-bailey-button-c-
345.html"><strong>UGG Bailey Button Boots</strong></a>,Good After-sale Service,
Big Discount, Free Shipping, High Quality, Quick Delivery.

Don't change these.
Name: Email:
Entire Thread Thread List