Ransomed

Ransomed is a blue team lab that falls under the Malware Analysis category and will cover the following subjects: PEStudio, scdbg, PE Tool, x32 debugger, Execution, Privilege Escalation, Defense Evasion.

Learning Objectives

Reconstruct advanced malware execution by performing dynamic analysis and memory forensics to diagnose process hollowing, dynamic API resolution, and string obfuscation.

Categories: Malware Analysis.

MITRE ATT&CK Tactics: Execution, Privilege Escalation, Defense Evasion.

Tools: PE Tool, x32 debugger, PEStudio, scdbg.

Difficulty: hard.