CategoriesVendors Norman

Norman

Norman

Insectra is a Value Added Reseller of Norman. Norman ASA, founded in Oslo Norway in 1984, is a world leader and pioneer in proactive content security solutions and forensics malware tools. Millions of users rely on Norman's solutions, such as network security, endpoint protection solutions and malware analysis tools, to protect their values.

Norman, as a technology supplier, offers proactive antimalware technology to be used within security products and service security solutions worldwide. Norman’s proactive antimalware solutions are powered by the patented technology, Norman SandBox®.

Norman SandBox® together with Norman Exploit Detection and Norman DNA Matching are the cornerstones of Norman's proactive strategy to combat Internet based crime. Companies like MessageLabs (Symantec), eEye Digital Security, Microsoft among others use Norman’s technology to help protect their customers.

Through its technology platform, Norman delivers core antimalware protection for clients, servers and network security. These products and services are designed to protect business communications and resources, including corporate networks and applications, remote employees, branch offices, and extranets. The company also offers market-leading advanced malware analyzers which enable organizations to automate the process of analyzing suspicious files, identifying types of malware, and assessing threats. Norman's award-winning security solutions protect millions of consumer PCs from hackers, spyware and identity theft.

Norman solutions are available through Norman subsidiaries and a network of partners around the world. The company's headquarters are located in Norway and its primary markets are in Europe and the USA.

www.norman.com

Display:
Norman® SandBox Analyzer

The SandBox Analyzer helps security professionals automate their malware analysis process. A complete analysis of the samples are available in a variety of formats giving the user the freedom to see the information they prefer to see. The most useful outputs are the SandBox summary, available in both text or XML formats, and the API log of system calls. The Analyzer also offers the ability to extract dropped files, memory dumps, and URL content from the SandBox environment. The graphical interface, used for help desk and quick behavioral analysis situations, provides other information windows including anti-virus engine signature scanning, statistics, lists of dropped files, network connections, and IRC servers found in the batch of suspicious files analyzed. SandBox Analyzer for Linux gives customers an important option to the popular Windows version of the SandBox Analyzer.

 

Norman® SandBox Online Analyzer

Norman SandBox Online Analyzer is a web-based and cost effective alternative to the full Norman SandBox Analyzer tool. Like SandBox Analyzer, SandBox Online Analyzer enables users to analyze file behavior in a much faster and more effective way than ever before. The analyst may upload files for analysis and view previous analyses and statistics from anywhere in the world. The need for manpower and actual time needed to analyze the suspicious files are thereby reduced considerably.

Norman® SandBox Analyzer Pro

SandBox Analyzer Pro provides deep forensic analysis of executable code. Analyzer Pro is a complete reverse engineering environment developed on the stability of the powerful SandBox platform. Analyzer Pro combines the capabilities of many other reverse engineering tools into one product. The user has full control over the SandBox environment and the execution of the sample being analyzed. Registers, memory, disassembled code, virtual hard disk, and network activity can all be closely monitored and manipulated in order to understand the full potential of the suspicious code. Analyzer Pro includes many advanced debugging features like the ability to take snapshots, simulate execution in reverse, search and dump memory contents, log and save network packets, and many others. The user is able to see and work with code both at the application and kernel levels to see rootkit and exploit code behavior. The ability to connect to the live internet allows analysts to quickly analyze and monitor botnets, network worms, downloaders, and other network reliant code.

Norman® SandBox Reporter

Norman SandBox Reporter provides you with comprehensive information of samples that have been analyzed by Norman’s malware labs during the past 24 hours. Information in this subscription includes SandBox summaries of the files' behavior and intent, a list of IRC networks found in the new malware, complete with login details as well as a list of URLs and files the malware tries to contact or download from the Internet. These files normally contain malicious code like viruses, trojans, and spyware. Having access to this information as soon as possible adds another layer of protection to the network.