Whippin' out your arsenal
Let us see the list of tools that we will be using or referring further.
Fingerprinting
- PEiD/ExeInfo: https://tuts4you.com/download.php?list.37
- FileAlyzer (with ssdeep.dll for ssdeep hashes): http://www.safer-networking.org/products/
- HeaventoolsPEExplorer: http://heaventools.com/
- Yara: https://code.google.com/p/yara-project/downloads/list
User mode sandboxing
- BSA Buster Sandbox: http://bsa.isoftware.nl/
- Sandboxie: http://www.sandboxie.com/
- Cuckoo Sandbox: http://cuckoosandbox.org/ and www.malwr.com
- VMWare: http://www.vmwareinc.com/
Debugging and disassembly
- OllyDBG 1.10/2.0: http://www.ollydbg.de/.
- IDA Pro 6.1 or above: http://www.hex-rays.com/products/ida/index.shtml.
- Debugging Tools for Windows(x86): This requires installation. It ...
Get Windows Malware Analysis Essentials now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.