PDF Course Advanced Malware Analysis PDF
PDF Course Advanced Malware Analysis PDF
PDF Course Advanced Malware Analysis PDF
As malware authors continue to improve in their efforts to thwart the reverse engineering of their tools,
analysts must learn to combat this sophisticated malware by studying its anti-analysis techniques. This
course is focused on advanced topics related to combating malware defense mechanisms. Designed for
the experienced malware analyst, students will learn to create scripts for IDA Pro and various debuggers
to overcome challenging or repetitive tasks. Students will also learn how to defeat packed and armored
executables and will be challenged to demonstrate these skills several times throughout the course.
Additional topics covered will include malware stealth techniques such as process injection and rootkit
technology along with tools and techniques to aid in their analysis. All concepts and material presented
are reinforced with demonstrations, real-world case studies, follow-along exercises and student labs to
allow students to practice what they have learned.
Duration 5 days
Who Should Attend Information security staff, forensic investigators, or others requiring an
understanding of how to overcome difficult challenges in malware
analysis.
Contact 1.800.647.7020
[email protected]
www.mandiant.com/education.htm
Clever malware authors will attempt to complicate In this section we discuss the latest techniques
the reverse engineering process by forcing the that malware authors use to complicate analysis.
malware analyst to conduct fairly complex tasks in Topics include:
repetitive fashion. Defeating malware of this Virtual machine detection
nature may take days or weeks if attempted by Debugger detection
hand. In this section we will discuss scripting the Hardware breakpoint detection
IDA Pro disassembler to tackle these challenges as Software breakpoint detection
well as other tools to enhance and expedite the Anti-disassembler tricks
static analysis process.