Performing analysis on a Visual Basic (VB) script, or when Visual Basic is paired with the .NET Framework, becomes an exercise of source code analysis. Unfortunately when Visual Basic is compiled to a Windows Portable Executable (PE) file it can become a nightmare for many malware analysts and reverse engineers.
Why is it used by malware?
more here.............http://vrt-blog.snort.org/2014/08/discovering-dynamically-loaded-api-in.html
Why is it used by malware?
more here.............http://vrt-blog.snort.org/2014/08/discovering-dynamically-loaded-api-in.html