Welcome to Ask A Pentester, where you can get your security questions answered by members of the IT Security community!

Spread the word!

What is the best book for learning Malware RE?

+1 vote
I mean, is there something like "The Shellcoder's Handbook", that is, a bible of...?
asked 1 year ago in Reverse Eng. by TheMaskedNerdo amateur (340 points)
edited 1 year ago by carlos

5 Answers

+2 votes
 
Best answer
There is actually one "kind of" Malware RE bible. I haven't checked it out but it's already ordered! ;)

http://amzn.to/9VjjNs

Hope this helps!
answered 1 year ago by Chaly Drain Bamaged enthusiast (420 points)
I agree, the book rocks!
I can also recommend this book very much despite the fact that reversing malware plays a small role there.......
I also ordered it and heard KMDave did also.

Its really well written. But what to expect from a book that is liked by Lenny Zeltser? ^^
+1 vote
I started with "Gray Hat Hacking"! Easy to read and good Topics. Also have the cookbook but didn't have time to read.
answered 1 year ago by MacH (70 points)
There is a really good section on identifying PDF malware in the Third Edition of this title. Great recommendation!
0 votes

The Malware Analysts Cookbook is unique is that it discusses (and includes on the DVD) several customized tools based on http://yara-project.googlecode.com

One of them is simply a packer ID file for yara.

Another great tool is called pescanner.py.

Both of these tools are discussed here -- http://www.zonbi.org/archives/495 -- and I found another cool blog that's totally unrelated here -- http://lvdeijk.wordpress.com/2011/02/21/closing-the-loop/ -- that I'm including for fun.

I am also a fan of the MANDIANT Red Curtain tool for analyzing potential malware.

answered 1 year ago by atdre pro pentester (1,080 points)
0 votes
I think malware analyst's cookbook must be one of the best book for what you are looking.

But if you want much more sources to learn malware RE, you should seek informations about windows debugging, windows internals, or subjects like cracking software. All theses domains will bring you knowledge which is very usefull for malware RE
answered 1 year ago by Elboras (90 points)
0 votes
Best book for Malware RE should be "Practical Malware Analysis: The Hands-On Guide to Dissecting Malicious Software"

More info : http://www.amazon.com/Practical-Malware-Analysis-Hands-Dissecting/dp/1593272901

Best Regards,

VietWOW
answered 2 months ago by vietwow (50 points)

Please log in or register to answer this question.