Faites connaître cet article à vos amis:
Accelerated Windows Malware Analysis with Memory Dumps Dmitry Vostokov
Également disponible en tant que :
Accelerated Windows Malware Analysis with Memory Dumps
Dmitry Vostokov
The full transcript of Software Diagnostics Services training. Learn how to navigate process, kernel, and physical spaces and diagnose various malware patterns in Windows memory dump files. The course uses a unique and innovative pattern-oriented analysis approach to speed up the learning curve. The training consists of practical step-by-step hands-on exercises using WinDbg, process, kernel and complete memory dumps. Covered more than 20 malware analysis patterns. The main audience is software technical support and escalation engineers who analyze memory dumps from complex software environments and need to check for possible malware presence in cases of abnormal software behavior. The course will also be useful for software engineers, quality assurance and software maintenance engineers, security researchers, malware and memory forensics analysts who have never used WinDbg for analysis of computer memory. The second edition uses the latest WinDbg 10 version and includes malware analysis pattern catalog reprinted from Memory Dump Analysis Anthology volumes.
Plus par Dmitry Vostokov
Afficher toutPlus d'ouvrages du même éditeur
Voir tous les Dmitry Vostokov ( par ex. Paperback Book , Hardcover Book et Book )