Group Purchasing
Group Purchasing

Expanding Response: Deeper Analysis for Incident Handlers

Expanding Response: Deeper Analysis for Incident Handlers (PDF, 3.10MB)Published: 09 Oct, 2008
Created by:
Russ McRee

The perspective embraced for this discussion is that of an analyst who is working a process to determine the exact nature of malicious software on his network. He is in receipt of the above mentioned .exe and .pcap files and seeks to further his understanding with the use of less typical tools. She begins the process with the network capture, and then takes a closer look at the binary to see what can be learned and what the impacts of an outbreak on her network might be.