$3,899.00
Date | Day | Time | Duration |
26 Aug | Monday | 0900-17:00 ICT/GMT+7 | 8 Hours |
27 Aug | Tuesday | 0900-17:00 ICT/GMT+7 | 8 Hours |
28 Aug | Wednesday | 0900-17:00 ICT/GMT+7 | 8 Hours |
Malware analysis and memory forensics are powerful analysis and investigative techniques used in reverse engineering, digital forensics and incident response. Adversaries are becoming more sophisticated and carrying out advanced malware attacks on critical infrastructures, Data Centers, private and public organizations. This makes detecting, responding and investigating such intrusions increasingly critical for information security professionals. Malware analysis and memory forensics have become a must-have skill for fighting advanced malwares, targeted attacks and security breaches.
This course will introduce attendees to basics of malware analysis,reverse engineering, Windows internals and memory forensics. It will then gradually progress deeper into more advanced concepts of memory forensics.
This course uses hands-on labs using real world malware samples and infected memory images (Crimewares, APT malwares, Rootkits etc) to help attendees gain better understanding of the subject. The training also shows how these techniques can be incorporated in a sandbox to automate malware analysis. After taking this course attendees will be equipped with skill to analyze, investigate and respond to malware related incidents.
Introduction to Malware Analysis
Static Analysis
Dynamic Analysis/Behavioural analysis
 Automating Malware Analysis(sandbox)
Malware Persistence Methods
Code Analysis
Introduction to Memory Forensics
Volatility Overview
Investigating Process
Investigating Process handles & Registry
Day 3
Investigating Network Activities
Investigation Process Memory
Investigating User-Mode Rootkits & Fileless Malwares
Memory Forensics in Sandbox technology
Investigating Kernel-Mode Rootkits
Memory Forensic Case Studies