Honeynet Workshop 2011
March 21th I was in Paris for the annual Honeynet Workshop. For the first time this year there was a conference day accessible to the general public. Moreover, I didn’t have to pay the registration fee since I successfully completed one of the Honeynet Forensics challenges. The day was split in 4 sessions and had talks covering the Honeynet projects, malware, and ethical and legal considerations of tracking botnets and eventual take-downs.
Continue reading
Creating empty VMWare .vmdk files
Having empty vmdk files allows you to – create virtual machines even with vmware player – create additional disks and add them to existing vmware installations The easiest way to create custom vmdk ‘disks’ is by using a free online tool called “EasyVMX” (http://www.easyvmx.com) Use EasyVMX version 2 to create a virtual machine : http://www.easyvmx.com/new-easyvmx.shtml […]
How to backup VMWare ESX virtual machines
Today, I will try to explain 2 techniques that will allow you to backup your vmdk files (virtual machines) on a VMWare ESX 3.0.x server. My lab runs on 3.0.2, but this will work on 3.0.1 (and maybe earlier versions) as well. Before continuing, let’s make a couple of assumptions : I will explain how […]
How to restore a Windows 2003 DC using ASR and VMWare
The following procedure should work for any type of hardware, but I’ve used VMWare (so this procedure is also valid if you want to convert a physical Domain Controller to VMWare). Additionally, the procedure works for Windows 2003 server, but also for Windows XP (professional) Prerequisites : ASR backup .bkf file and the ASR floppy […]
AD 2003 DC Restore Technique using VMWare (without having to grant local DC/Domain Admin rights)
In certain distributed AD scenario’s, Domain Admins group membership or local DC admin privileges are restricted to certain people only. This is a good thing to do, but it requires you to think about certain issues before they happen. One of these issues is backup and restore. Yes, you can schedule a system state backup […]