A BUILDING AN ANTI-EVASION ANALYSIS LAB

Building an analysis lab is a critical part of malware analysis, and this is doubly true when it comes to highly evasive and context-aware malware. A well-tuned analysis environment makes the tricky task of analyzing and reversing this type of malware a bit easier. In this chapter, I’ll walk you through creating a basic malware analysis lab environment, provide some configuration tips for concealing your hypervisor and virtual machines from malware, and share a few tricks you can use during the analysis process.

Lab Architecture

Malware analysis lab environments contain various virtual machines, ...

Get Evasive Malware now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.