Curso Malware Analysis Fundamentals

  • Redes & Infraestrutura de TI

Curso Malware Analysis Fundamentals

24h
Visão Geral

Este curso apresenta os fundamentos da análise de malware, incluindo comportamento malicioso, análise estática e dinâmica, indicadores, artefatos e mecanismos de detecção.

Objetivo

Após realizar este curso, você será capaz de:

  • Identificar características de malware
  • Realizar análises básicas
  • Extrair indicadores
  • Apoiar detecção e investigação
Publico Alvo
  • Malware Analysts
  • SOC Analysts
  • Incident Responders
  • Threat Hunters
Pre-Requisitos
  • Conhecimentos de Windows
  • Conhecimentos básicos de redes
  • Familiaridade com sistemas de arquivos
  • Noções de programação ou scripting
  • Conhecimentos básicos de Digital Forensics
Conteúdo Programatico

Module 1: Malware Analysis Fundamentals

  1. Malware concepts
  2. Malware categories
  3. Malware lifecycle
  4. Malware delivery
  5. Malware execution
  6. Malware persistence
  7. Malware objectives
  8. Analysis environments
  9. Malware handling
  10. Malware analysis methodology

Module 2: Static Analysis

  1. File identification
  2. Hash analysis
  3. Metadata
  4. Strings analysis
  5. File structure
  6. PE file fundamentals
  7. Imports and exports
  8. Embedded resources
  9. Static indicators
  10. Static analysis workflow

Module 3: Dynamic Analysis

  1. Sandboxing
  2. Process behavior
  3. File system activity
  4. Registry activity
  5. Network activity
  6. Persistence behavior
  7. Process relationships
  8. Runtime indicators
  9. Behavioral analysis
  10. Dynamic analysis workflow

Module 4: Network Behavior

  1. DNS activity
  2. HTTP communication
  3. HTTPS metadata
  4. Command and Control
  5. Beaconing
  6. Network indicators
  7. Suspicious domains
  8. Traffic analysis
  9. Network-based detection
  10. Malware network investigation

Module 5: Persistence and Execution

  1. Registry persistence
  2. Services
  3. Scheduled Tasks
  4. Startup mechanisms
  5. WMI
  6. Process execution
  7. Script execution
  8. Persistence indicators
  9. Execution indicators
  10. Persistence analysis

Module 6: Malware Indicators

  1. Indicators of Compromise
  2. File indicators
  3. Registry indicators
  4. Network indicators
  5. Process indicators
  6. Behavioral indicators
  7. YARA concepts
  8. IOC extraction
  9. Indicator validation
  10. Detection engineering

Module 7: Malware Detection and Response

  1. Malware detection
  2. SIEM integration
  3. EDR detection
  4. IOC deployment
  5. Behavioral detection
  6. Malware containment
  7. Evidence preservation
  8. Malware eradication
  9. Incident response
  10. Malware reporting

Module 8: Practical Malware Analysis

  1. Sample preparation
  2. Static analysis
  3. Dynamic analysis
  4. Process analysis
  5. Network analysis
  6. Persistence analysis
  7. IOC extraction
  8. Detection development
  9. Analysis reporting
  10. Malware analysis case study
TENHO INTERESSE

Cursos Relacionados

Curso CISCO CCNA Exame CCNA 200-125

40 horas

Curso SAP BASIS S4hana - Administração e Infraestrutura

40 horas

Curso MCSA Networking with Windows Server 2016

40 horas

Curso CCNP Route 300-101 Preparatório Para Certificação

40 horas

Curso Cloudera Cientista de Dados

32 horas

Curso VMware Instalando Configurando e Gerenciando vSphere

32 horas

Curso de Redes TCP/IP - Protocolo de Redes de Computadores

40 horas

Curso Cisco Switched Networks 300-115

40 horas

Curso Wireless LAN Foundations

16 horas

Curso Certified Network Defender Certification

40 horas