DAY 1:
Malware Analysis
- Static Analysis
- Dynamic/Behavioral Analysis
Malware Overview
- Definition of Malware
- Malware Intentions and Motivations
- Malware Types
- Virus
- Worm
- Backdoor
- Trojan
- Malicious Mobile Code
- User-Mode Rootkit
- Kernel-Mode Rootkit
- Combination Malware
- Vulnerabilities
- Malware threats research websites
- Technologies to fight Malware and their limitations
- Intrusion Detection Systems
- Intrusion Prevention Systems
- Anti-Virus Software
Windows Internals for Behavioral Analysts
- Windows API
- Common Libraries
- Building An Analysis Environment
Behavioral Analysis Process (BA)
- Understanding The Process
- Knowing Your Goals
BA Tools of the Trade
- VMware Workstation
- Sysinternals Suite
- Regshot
- ApateDNS & Fakenet
- Wireshark
- PEID & PackerBreaker
- Process Hacker
DAY 2:
Baselining
- Why Baseline a System
- The Windows Registry
- Baselining Tools
Document-Embedded Malware
- How To Embed a Document
- Hijack Scenario
- Macro Viruses
- Melissa Virus Case Study
Adware, Spyware, and Ransomware Botnet Malware
- Definition of a Bot
- Botnet Communication Architecture
- Setting Up and Using IRC For Command and Control
DAY 3:
KeyLoggers
- Purposes
- Keylogger types
- Remote Access Keyloggers
- Sniffers
Malicious Mobile Code (Interactive Web Apps)
- Definition of Malicious Mobile Code
- Attack Vectors
- Reducing Risk of MMC Attacks
Backdoors
- Common Backdoor Types
- Propagation Methods
- Persistence Methods
- Finding Backdoors
Trojan Horses
- Definition of a Trojan Horse
- Backdoor vs Trojan Horse
- Trojan Horse Infection Methods
Advanced Persistent Threat (APT)
User-Mode Rootkits
- Definition of a Rootkit
- Benefit of Rootkits for Attackers
- Kernel- vs User-Mode Rootkits
- Detection Methods
DAY 4:
Drop and Execute Malware
VMWARE Detection
- Why Malware does VMware detection
- Honeynets and Honeypots
- Methods of VM Detection
Destructive Malware CHM Malware
- Normal CHM File Usage
- Advantages and Disadvantages of CHM Files
PDF Malware
Kernel-Mode Rootkits
DAY 5:
Student Practical