Skip navigation.

Malware that Detects Dynamic Analysis Tools


I'm working on a research tool that performs some dynamic analysis and hopefully more transparently than current tools (on the lines of ProcMon, RegShot, etc...). I need to find a malware sample that in some way detects either that current dynamic analysis tools are running or some generic detection of dynamic analysis (not anti-debugging, but that doesn't hurt) and changes its behavior or bails out.

Does anyone know of a specific malware sample that has this sort of detection?


find any conficker

find any conficker sample.