Book: Accelerated Windows Malware Analysis with Memory Dumps, Third Edition

The following direct links can be used to order the book now:

Available in PDF format with the recording and optional Memory Dump Analysis Anthology from Software Diagnostics Technology and Services

Available in PDF format from Leanpub

Available in ultra-premium color paperback format from Amazon

Available in Kindle print replica format from Amazon

The book is also included in the following training packs:

WinDbg Training Pack

Accelerated Windows Memory Forensics and Malware Analysis with Memory Dumps

Pattern-Oriented Malware Analysis Training Pack

Pattern-Oriented Windows Victimware Analysis Training Pack

Pattern-Oriented Windows Memory Forensics Training Pack

Windows Memory Dump Analysis for Endpoint Security Training Pack

Complete Pattern-Oriented Software Diagnostics Training Pack

The Korean second edition is available from Acorn publisher

The full transcript of Software Diagnostics Services training. Learn how to navigate process, kernel, and physical spaces and diagnose various malware patterns in Windows memory dump files. The course uses a unique and innovative pattern-oriented analysis approach to speed up the learning curve. The training consists of practical step-by-step hands-on exercises using WinDbg, process, kernel and complete memory dumps. Covered more than 20 malware analysis patterns. The main audience is software technical support and escalation engineers who analyze memory dumps from complex software environments and need to check for possible malware presence in cases of abnormal software behavior. The course will also be useful for software engineers, quality assurance and software maintenance engineers, security researchers, malware and memory forensics analysts who have never used WinDbg for analysis of computer memory. The third edition uses the latest WinDbg Preview version with some exercises updated to Windows 11 and is optionally containerized.

  • Title: Accelerated Windows Malware Analysis with Memory Dumps: Training Course Transcript and WinDbg Practice Exercises, Third Edition
  • Authors: Dmitry Vostokov, Software Diagnostics Services
  • Publisher: OpenTask (July 2022)
  • Language: English
  • Product Dimensions: 28.0 x 21.6
  • PDF: 324 pages
  • ISBN-13: 978-1912636969

Table of Contents