LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions
User Name
Password
Linux - Distributions This forum is for Distribution specific questions.
Red Hat, Slackware, Debian, Novell, LFS, Mandriva, Ubuntu, Fedora - the list goes on and on... Note: An (*) indicates there is no official participation from that distribution here at LQ.

Notices


Reply
  Search this Thread
Old 03-13-2004, 08:55 PM   #1
bungerScorpio
LQ Newbie
 
Registered: Mar 2004
Posts: 2

Rep: Reputation: 0
Recommend a Live bootable Distro for Reverse Engineering?


Does anyone know if a live, bootable distro exists with tools for reverse engineering? I am looking for something that can boot from CD and then allow me to reverse engineer virus and malware code. I know all of the tools exist as separate packages, but was wondering if anyone has created a live distro yet?

tia,
bS
 
Old 03-13-2004, 09:10 PM   #2
frandalla
Member
 
Registered: Oct 2003
Location: Tokyo - Japan
Distribution: Slackware
Posts: 348
Blog Entries: 1

Rep: Reputation: 37
What kind of tools you're looking for? If it's a c/c++ compiler, gbd and stuff like that knoppix have all this...
 
Old 03-14-2004, 12:16 AM   #3
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Rep: Reputation: 69
Depending on what kind of analysis you are doing, you might also want to take a look at FIRE and Knoppix-STD.
 
Old 03-16-2004, 08:45 PM   #4
bungerScorpio
LQ Newbie
 
Registered: Mar 2004
Posts: 2

Original Poster
Rep: Reputation: 0
I don't know all of the tools required to reverse engineer code, so I am looking for a live bootable distro that would have those tools readily available. Things like decompilers, memory heap analyzers, etc...

I envision putting virus code on a floppy or a portion of a hard drive, boot from the distro CD, and having my way with the code to determine how it installs itself, how it propogates, how it sends messages, etc...

I am pretty sure that FIRE, STD, or any of the others ( INSERT, LAN Security,etc ) don't have those kinds of tools. They have more forensics-based ( recovery ) tools...

thanks again for any ideas,
bS
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Reverse Engineering for Portability dlublink Linux - Software 1 11-23-2005 01:43 PM
Reverse engineering code barrythai SUSE / openSUSE 4 09-08-2005 05:29 AM
Reverse Engineering tools hari_s_82 Linux - Newbie 0 10-13-2004 06:58 AM
reverse engineering walterw Programming 3 01-18-2003 04:15 PM
Reverse engineering the kernel lolmc Linux - General 7 07-05-2002 11:54 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions

All times are GMT -5. The time now is 06:24 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration