<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: Booby-trapped javascripts threaten malware analysts</title>
	<atom:link href="http://blog.fortinet.com/booby-trapped-javascripts-threaten-malware-analysts/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.fortinet.com/booby-trapped-javascripts-threaten-malware-analysts/</link>
	<description>Real Time Network Protection</description>
	<lastBuildDate>Tue, 07 Feb 2012 23:31:32 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.3</generator>
	<item>
		<title>By: Secure Information. &#8250; Detecting VMware with JavaScript (or how to waste your time with pointless exercises)</title>
		<link>http://blog.fortinet.com/booby-trapped-javascripts-threaten-malware-analysts/comment-page-1/#comment-2073</link>
		<dc:creator>Secure Information. &#8250; Detecting VMware with JavaScript (or how to waste your time with pointless exercises)</dc:creator>
		<pubDate>Tue, 15 Sep 2009 17:13:48 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fortinet.com/?p=254#comment-2073</guid>
		<description>[...] So a thread on ethicalhacker.net discussed some JavaScript tricks that web exploit kits are using to screw with analysts looking at the malicious sites and js. Today most analysts will use a debugger or interpreter like Rhino or Malzilla. Well, the site authors are starting to add code to either cause the script to exit when run in one of the interpreters or to do more malicious stuff like delete files and such. [original article] [...]</description>
		<content:encoded><![CDATA[<p>[...] So a thread on ethicalhacker.net discussed some JavaScript tricks that web exploit kits are using to screw with analysts looking at the malicious sites and js. Today most analysts will use a debugger or interpreter like Rhino or Malzilla. Well, the site authors are starting to add code to either cause the script to exit when run in one of the interpreters or to do more malicious stuff like delete files and such. [original article] [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

