A forum for reverse engineering, OS internals and malware analysis 

All off-topic discussion goes here.
 #29179  by Bogdan-Mihai
 Mon Sep 05, 2016 7:38 am

I recently came across this Shadow Security Scanner by Safety-Lab. It looks very nice, it does what it is supposed to do, but I suspect it could be malicious. It creates some temporary files, spawns some processes upon installation. Did someone else tried it? Any thoughts?


Have a nice day,
 #29189  by EP_X0FF
 Wed Sep 07, 2016 5:29 am
Never heard about it. Something similar to Microsoft Baseline Security Analyzer?
 #29190  by Bogdan-Mihai
 Wed Sep 07, 2016 7:14 am
Basically, yes. This one looks complete and it seems like it can audit proxies, too. MBSA looks like it works only against Windows.

Maybe someone used the free 15 day version or can have a look at it.
 #29202  by waffles2.0
 Thu Sep 08, 2016 8:19 am
I shall take a look and run it in Cuckoo see if anything interesting pops up. I'll report back if there is anything interesting.