D
Deleted member 21043
Thread author
Hi everyone,
In this thread I will leave some links to some tools you may be interested in when introducing yourself to Malware Analysis.
Please note: some of these tools aren't tools for beginners, and take a lot of work to become skilled in using. You may end up in headaches and long journeys of errors and mistakes. But you will get through it, and before you know it you will be a expert. It takes time.
Without further adue, here we go:
Disassembler:
- IDA Pro
- IDA Free (if you cannot get the Pro)
Networking:
- TCPView
- Wireshark
- Fiddler
Registry monitoring:
- Regshot
Other:
Malcode Analysts Pack
PE Explorer
FileAlyzer
PEID
LordPE
WinDbg
OllyDmpEx
Cheers.
In this thread I will leave some links to some tools you may be interested in when introducing yourself to Malware Analysis.
Please note: some of these tools aren't tools for beginners, and take a lot of work to become skilled in using. You may end up in headaches and long journeys of errors and mistakes. But you will get through it, and before you know it you will be a expert. It takes time.
Without further adue, here we go:
Disassembler:
- IDA Pro
- IDA Free (if you cannot get the Pro)
Networking:
- TCPView
- Wireshark
- Fiddler
Registry monitoring:
- Regshot
Other:
Malcode Analysts Pack
PE Explorer
FileAlyzer
PEID
LordPE
WinDbg
OllyDmpEx
If anyone has other tools they'd like to share, feel free too in the comments. I only did a small amount of tools listed here, so people who like this subforum in the community can help to fill in the gaps! (of course if the gaps aren't filled then I'll have to do it and then my plan to get people involved with the threads would fail a bit
) (Who knows, maybe it will be such a success that people will comment and categorize the tools under "Other" (if not I'll do it
)).
Look at this thread: http://malwaretips.com/threads/places-to-find-malware.1812/ to see what I am trying to do with this thread...
Look at this thread: http://malwaretips.com/threads/places-to-find-malware.1812/ to see what I am trying to do with this thread...
Cheers.
Last edited by a moderator: