Ravindra BagaleCourses & study guides

39. Malware Threats

Chala mitrano, Chapter 38 madhe Active Directory identity attacks baghitla – aata malware (दुर्भावनापूर्ण सॉफ्टवेअर). Virus, worm, trojan, ransomware, spyware, rootkit, botnet, fileless, wiper – naave ahe, pan Blue job ekach: spread rokna, detect karna, contain karna, recover karna. Ghabru naka – aapan real ransomware download nahi karnaar. Lab madhe EICAR / pseudo-malware / snapshots. He khup important aahe, lakshat theva!

What you will learn in this chapter

  • Malware types: virus, worm, trojan, ransomware, spyware, adware, rootkit, botnet, fileless, wiper – clear defs for defenders
  • How malware spreads: phishing, drive-by, USB, supply chain, cracked software, Office macros
  • Ransomware deep dive: encryptor vs locker, double extortion, backups + immutable / offline copies (Raja-Rani Traders)
  • Static vs dynamic analysis mindset – hashes, VirusTotal (lab samples only), sandbox ideas; never run unknown malware on host OS
  • Indicators of compromise (IOC): hashes, C2 domains, weird processes, autoruns, DNS spikes
  • Defence stack: AV/EDR, allowlisting, least privilege, patching, email filtering, awareness
  • Safe malware lab: isolated VM + snapshot, no shared folders with host secrets, revert
  • Incident response for malware + CERT-In awareness
  • Project: Build a weak lab VM, simulate safely, fix, re-verify

Lab scope

Study and practice only on your own isolated VMs (VirtualBox/VMware host-only / no shared folders with host secrets). Never download real ransomware, never encrypt personal or office files, never email malware samples. IT Act sections such as 43 and 66 apply if you damage others' systems (verify current text). Use EICAR test file and benign marker scripts only. Lab = learn. Production = defend only.

Concepts in this chapter

  1. 39.1What Is Malware – Types for Defenders
  2. 39.2How Malware Spreads
  3. 39.3Ransomware Deep Dive – Raja-Rani Traders
  4. 39.4Static vs Dynamic Analysis Mindset
  5. 39.5Indicators of Compromise (IOC)
  6. 39.6Defence Stack – Practical Controls
  7. 39.7Safe Malware Lab Setup
  8. 39.8Incident Response for Malware + CERT-In Awareness
  9. 39.9Putting It Together – Purple Team Mindset

The chapter recap is at the end of the last concept page.