This lab uses the files Lab01-01.exe and Lab01-01.dll. Use the tools and techniques described in
the chapter to gain information about the files and answer the questions below.
1. Upload the files to http:/www.VirusTotal.com/ and view th
Analyze the malware found in the file Lab03-01.exe using basic dynamic analysis tools.
1. What are this malwares imports and strings?
a. The malware appears to be packed. The only import is ExitProcess, although the
strings appear t
Analyze the malware found in the file Lab05-01.dll using only IDA Pro. The goal of this lab is to
give you hands-on experience with IDA Pro. If youve already worked with IDA Pro, you may
choose to ignore these questions and focus on reverse-e
In this lab, you will analyze the malware found in the file Lab06-01.exe.
1. What is the major code construct found in the only subroutine called by main?
a. The major code construct is an if statement located at 0x401000.
b. I determine