Malware: Reverse engineering

Formation inter-entreprise

À qui s'adresse la formation?

System administrators, System architects and IT administrators, Systems engineers

Durée

3,00 jour(s)

Langues(s) de prestation

EN FR

Prochaine session

25.04.2024
Lieu
Windhof (Koerich)

Prix

1790,00€

Objectifs

In this course, we address the issue of malware, a major societal concern. IT infrastructures now require security specialists to prevent attacks and analyze the damage caused by malware.

The lesson plan is in three parts:

  • What is a malware: taxonomies and different types and capabilities of malware. Analysis of classic schemes of compromises and adjacent infrastructures.
  • Malware analysis: Review of the basics needed for Windows process and assembly language operation. Triages techniques, dynamic and static analysis. Use of debugger, decompilers and disassembler. Using flow control graphs. Use of forensic detection tools.
  • Technique used by malware: Obfuscations of code, function call and flow. Encryption, polymorphisms and variations, Stealth.

Contenu

What is a malware
  • Taxonomies and different types and capabilities of malware
  • Analysis of classic schemes of compromises and adjacent infrastructures
Malware analysis
  • Review of the basics needed for Windows process and assembly language operation
  • Triages techniques, dynamic and static analysis
  • Use of debugger, decompilers and disassembler
  • Using flow control graphs
  • Use of forensic detection tools
Technique used by malware
  • Obfuscations of code, function call and flow
  • Encryption, polymorphisms and variations, Stealth

Certificat, diplôme

Une attestation de participation sera transmise aux participants

Prochaine session

Date
Ville
Language & prix
25.04.2024

27.04.2024
Windhof (Koerich)
FR 1790,00€
03.08.2024

05.08.2024
Windhof (Koerich)
FR 1790,00€
18.12.2024

20.12.2024
Windhof (Koerich)
FR 1790,00€

Contact pour cette formation

Nathalie Thielemans / Nassera Aici

Ces formations pourraient vous intéresser