Advanced Malware Hunting (AMH)

Trainings-ID:
AMH

Wichtige Information

Dieses Training wird in ENGLISCH gehalten!

Inhalt des Trainings

This course teaches the ways of identifying how malware looks like, what malicious activities you should look out for and the ways of removing it. You will also learn how to implement and manage preventive solutions both for small and medium sized for enterprises and organizations. During this course you learn what makes piece of code malicious, go through historic examples and get familiar with different kinds of malware and how to identify various cases. Once we have sufficient understanding of techniques and capabilities of malware, we will start system and network hardening-you will implement security in depth solutions, such as white listing or virtualization, in order to protect assets.

.... Zur Videobeschreibung

Zielgruppen

  • Enterprise administrators
  • infrastructure architects
  • security professionals
  • systems engineers
  • network administrators
  • IT professionals
  • security consultants
  • other people responsible for implementing network and perimeter security

Vorkenntnisse

  • a good hands-on experience in administering Windows infrastructure
  • at least 5-8 years in the field is recommended

Detail-Inhalte

What is Malware
  • Malware History
  • Malware Goals
  • Types of Malware
  • Advanced Persistent Threats
  • Indicators of Compromise

Introduction to Malware Analysis
  • Types of malware analysis
  • Goals of malware analysis
  • Impact analysis
  • Containment and mitigation
  • Incident prevention and response playbooks
  • Setting up sandbox environment
  • Cloud-based malware analysis

Static Malware Analysis
  • Executable analysis
  • Extracting secrets
  • Determining if file is packed or obfuscated
  • Fingerprinting the malware
  • Pattern matching using YARA

Behavioral Malware Analysis
  • Malware detonation
  • Sysinternals suite
  • Network communication analysis
  • Monitoring system events
  • Memory dump analysis
  • Simulating real environment

Malicious non-exe files
  • Alternative binaries
  • PowerShell scripts
  • Office documents
  • JScripte
  • HTML documents
  • Living off the land binaries

Advanced Techniques used by Malware
  • Malware persistence methods
  • Malware stealth techniques
  • Covert channel communication
  • Domain Generator Algorithms
  • Anti-VM and Anti-debugging tricks

Defending against Malware
  • Windows security solutions
  • Anti-Virus software
  • EDR software
  • Principle of least privilege
  • Application Whitelisting
  • Virtualization
  • Network and domain segmentation

Downloads

Jetzt online buchen

  • 19.08.-23.08.2024 19.08.2024 5T 5 Tage Online
    von Ihrem Computer Uhrzeiten
    • Preis  3.780,-
      • Online
  • 16.12.-20.12.2024 16.12.2024 5T 5 Tage Wien Online
    ETC-Wien · Modecenterstraße 22, Office 4, 5. Stock, 1030 Wien Uhrzeiten
    • Bundle:Training + Techconference  3.780,-
      • Präsenz
    • Preis  3.780,-

Preise exkl. MwSt.

Sie haben Fragen?

Ihr ETC Support

Kontaktieren Sie uns!

+43 1 533 1777-99

Hidden
Hidden
Hidden

Unsere Empfehlungen für Sie

Lernformen im Überblick

Mehr darüber