
MAL500 Reverse Engineering Malware
Course Overview MMAL500 - Reverse Engineering Malware is an intermediate course that exposes students to the theoretical knowledge and hands-on techniques to analyze malware of greater complexity. Students will learn to analyze malicious Windows programs, debug user-mode and kernel-mode malware with WinDbg, identify common malware functionality, in addition to reversing covert and encoded malware. Objectives Provide students with a working knowledge of analyzing malicious Windows programs, debugging user-mode & kernelmode malware, identifying common malware functionality, & other related topics Target Audience Junior malware analysts and reverse engineers who want to increase their skills to better understand more complex malicious code Estimated Course Length: 24 hours Day 1 Malware targeting Windows victims is prolific, and understanding how this malware interacts with the complex Windows operating system and API is a challenge not to be taken lightly. In the first part