Malware and Memory Deep Dive Workshop [EC-MMDD]

Location type

Malware and Memory Deep Dive Workshop [EC-MMDD]

Global Knowledge Network Netherlands B.V.
Logo Global Knowledge Network Netherlands B.V.
Provider rating: starstarstarstar_halfstar_border 7.5 Global Knowledge Network Netherlands B.V. has an average rating of 7.5 (out of 190 reviews)

Tip: need more info about the programme or price? Request information for free!

Description

Ontdek de verschillende trainingsmogelijkheden bij Global Knowledge

Online of op locatie er is altijd een vorm die bij je past.

Kies op welke manier jij of je team graag een training wilt volgen. Global Knowledge bied je verschillende trainingsmogelijkheden. Je kunt kiezen uit o.a. klassikaal, Virtueel Klassikaal (online), e-Learning en maatwerk. Met onze Blended oplossing kun je de verschillende trainingsvormen combineren.

OVERVIEW

In this Malware & Memory Forensics workshop, you will learn details of how malware functions, and how it is categorized. Then you will be shown details of the structure of memory, and how memory works. There is plenty of hands-on memory forensics. You will learn how to analyze memory to find evidence of malware.

OBJECTIVES

The purpose of the workshop is to teach students essential memory forensics; this workshop assumes a basic understanding of PC’s, networks, and basic forensics.

CONTENT

Types of Analysis

  • Swap space analysis
  • Memory Analysis
  • Data acquisition as per RFC 3227

In-memory data

  • Current processes
  • Memory mapped files
  • Caches
  • Open Ports

Memory Architectural Issues

  • Data s…

Read the complete description

Frequently asked questions

There are no frequently asked questions yet. If you have any more questions or need help, contact our customer service.

Didn't find what you were looking for? See also: Malware, Ethical Hacking, Cyber Security, Penetration testing, and Firewall.

Ontdek de verschillende trainingsmogelijkheden bij Global Knowledge

Online of op locatie er is altijd een vorm die bij je past.

Kies op welke manier jij of je team graag een training wilt volgen. Global Knowledge bied je verschillende trainingsmogelijkheden. Je kunt kiezen uit o.a. klassikaal, Virtueel Klassikaal (online), e-Learning en maatwerk. Met onze Blended oplossing kun je de verschillende trainingsvormen combineren.

OVERVIEW

In this Malware & Memory Forensics workshop, you will learn details of how malware functions, and how it is categorized. Then you will be shown details of the structure of memory, and how memory works. There is plenty of hands-on memory forensics. You will learn how to analyze memory to find evidence of malware.

OBJECTIVES

The purpose of the workshop is to teach students essential memory forensics; this workshop assumes a basic understanding of PC’s, networks, and basic forensics.

CONTENT

Types of Analysis

  • Swap space analysis
  • Memory Analysis
  • Data acquisition as per RFC 3227

In-memory data

  • Current processes
  • Memory mapped files
  • Caches
  • Open Ports

Memory Architectural Issues

  • Data structures
  • Windows Objects
  • Processes
  • Handles
  • Pool-tag scanning
  • %SystemDrive%/hiberfil.sys
  • Page/Swap File

Tools used

  • Using volatility
  • Dumpit.exe
  • hibr2bin
  • Win32dd
  • Win64dd
  • OSForensics

Registry in Memory

Stay up-to-date on new reviews
There are no reviews yet.
  • Request information about this course. From then on, you will also receive a notification when someone submits a review. That's a helpful way to remind yourself to keep learning!
  • View related products with reviews: Malware.
Share your review
Do you have experience with this course? Submit your review and help other people make the right choice. As a thank you for your effort we will donate € 1,- to Stichting Edukans.

There are no frequently asked questions yet. If you have any more questions or need help, contact our customer service.