Sponsored
Accelerated Windows Malware Analysis with Memory Dumps - 3rd Edition by Dmitry Vostokov & Software Diagnostics Services (Paperback)
About this item
Highlights
- The full transcript of Software Diagnostics Services training.
- Author(s): Dmitry Vostokov & Software Diagnostics Services
- 326 Pages
- Computers + Internet, Security
Description
About the Book
Learn how to navigate process, kernel, and physical spaces and diagnose malware patterns in Windows memory dump files using WinDbg and practical step-by-step hands-on exercises.
Book Synopsis
The full transcript of Software Diagnostics Services training. Learn how to navigate process, kernel, and physical spaces and diagnose various malware patterns in Windows memory dump files. The course uses a unique and innovative pattern-oriented analysis approach to speed up the learning curve. The training consists of practical step-by-step, hands-on exercises using WinDbg, process, kernel, and complete memory dumps. The training covers more than 20 malware analysis patterns. The main audience is software technical support and escalation engineers who analyze memory dumps from complex software environments and need to check for possible malware presence in cases of abnormal software behavior. The course will also be useful for software engineers, quality assurance and software maintenance engineers, security researchers, malware and memory forensics analysts who have never used WinDbg for analysis of computer memory. The third edition uses the latest WinDbg Preview version with some exercises updated to Windows 11 and is optionally containerized.