📚 OpenRCE is preserved as a read-only archive. Launched at RECon Montreal in 2005. Registration and posting are disabled.








Flag: Tornado! Hurricane!

 Forums >>  IDA Pro  >>  Teach me the art of RE.

Topic created on: June 20, 2010 11:55 CDT by Es19 .

Hello community,
first of all: I'm from germany and my English is pretty awful.

Reverse engineering has been fascinating me for a long time, but I never really figured out how to start. I have some experience in analyzing Logs like HiJackThis and usually I can figure out, whether a file is malicious or not.

But that's not RE. I want to learn how to analyze malicious samples. I don't know how to understand OllyDbg oder IDA Pro at all.
And I don't have the money to visit a course and pay 1000+ $.

You will probably say no, but is there anyone out there that would teach me the basics or maybe more about reversing malware?

I am a very friendly and calm person, and willing to learn whatever you want to teach me.

One of my biggest dreams would come true if someone decided to be my teacher.

I'm looking forward to hearing from you soon.

E-Mail: seaking19 (at) freenet.de
Or just reply here.

Best regards and warmest wishes,
Eric S.

  ronnie291983     June 20, 2010 23:48.25 CDT
the message looks like a something out of dating site :)

  Es19     June 21, 2010 03:50.52 CDT
Really? Wasn't meant to look like that :D

  voila     June 21, 2010 08:14.40 CDT
hello es19 ..

See i m also new .. bt not new like u r .. so i can tell u some fact on basis of my little experience is that ..
First of all .. stop thinking that RE(reverse engineering) is a 2 or 3 months course .. its a experience ... and its most toughest thing to get started .. No one can be ur teacher(Until u r very lucky) to teach u this deeeeep RE .. u have to started by urself .. hit ur head against IDA WINDBG FUZZERS again and again .. until u get to understand . it take tooo much efforts and too much time .. bt little brain .  Use google as ur mentor which tell u everything u want to know .

.. ES19 .. do not ask from people "how to do this ? like how to learn RE" .. ask people "i m getting this problem during RE , how can i solve it ?" believe me people of this RE World are very humble they will surely help u out bt they help only when u have started :) ..

take care
Byye

  djnemo     June 22, 2010 05:43.57 CDT
Search amazon for reverse engineering i think that good point to start

  Es19     June 22, 2010 07:36.43 CDT
How about the SANS tutorial? http://www.sans.org/security-training/reverse-engineering-malware-malware-analysis-tools-techniques-54-mid

This seems to be interesting. Is the OnDemand course good?
And how much will these Credits cost?

  enm16   June 29, 2010 07:38.30 CDT
> Es19: How about the SANS tutorial? http://www.sans.org/security-training/reverse-engineering-malware-malware-analysis-tools-techniques-54-mid
>
> This seems to be interesting. Is the OnDemand course good?
> And how much will these Credits cost?

The OnDemand course is (US) $2,710, and GREM (certification exam) is $499.

I am currently taking this course and it has definitely been worthwhile so far for me.  It won't turn you into a reverse engineer overnight, but it provides a good introduction to the tools and techniques to get you started in the field.

  Es19     June 29, 2010 09:42.02 CDT
Wow, that's a lot of money.

  NirIzr     July 10, 2010 16:44.43 CDT
I'd suggest reading. all you need is a little brain, and the right material - and as you probably already know - Google is your friend.
if you can spend 50 bucks, "Hacking disassembly uncovered" is a great book that teaches how to understand what the compiler&programmer meant by the assembly you see.
The IDA pro book is a great book to learn how to use IDA.

if you're aiming for an easy start - try tuts4you.com for some basic tutorials and "Disassemble this" crap.

good luck!

  cli3nt   July 14, 2010 14:37.31 CDT
For free. http://www.binary-auditing.com/

  NeOXQuiCk     July 16, 2010 08:00.19 CDT
Es19 as you probably noticed nothing is free.. today.. if you want something good you will have to pay for it..

  Swoorup     November 5, 2011 23:23.32 CDT
Hey guys, just questioning if these reverse engineering is your hobby or a career path?

Note: Registration is required to post to the forums.

There are 31,328 total registered users.


Recently Created Topics
[help] Unpacking VMP...
Mar/12
Reverse Engineering ...
Jul/06
let 'IDAPython' impo...
Sep/24
set 'IDAPython' as t...
Sep/24
GuessType return une...
Sep/20
About retrieving the...
Sep/07
How to find specific...
Aug/15
How to get data depe...
Jul/07
Identify RVA data in...
May/06
Question about memor...
Dec/12


Recent Forum Posts
Finding the procedur...
rolEYder
Question about debbu...
rolEYder
Identify RVA data in...
sohlow
let 'IDAPython' impo...
sohlow
How to find specific...
hackgreti
Problem with ollydbg
sh3dow
How can I write olly...
sh3dow
New LoadMAP plugin v...
mefisto...
Intel pin in loaded ...
djnemo
OOP_RE tool available?
Bl4ckm4n


Recent Blog Entries
halsten
Mar/14
Breaking IonCUBE VM

oleavr
Oct/24
Anatomy of a code tracer

hasherezade
Sep/24
IAT Patcher - new tool for ...

oleavr
Aug/27
CryptoShark: code tracer ba...

oleavr
Jun/25
Build a debugger in 5 minutes

More ...


Recent Blog Comments
nieo on:
Mar/22
IAT Patcher - new tool for ...

djnemo on:
Nov/17
Kernel debugger vs user mod...

acel on:
Nov/14
Kernel debugger vs user mod...

pedram on:
Dec/21
frida.github.io: scriptable...

capadleman on:
Jun/19
Using NtCreateThreadEx for ...

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit