Malware Initial Assessment

The goal of pestudio is to spot artifacts of executable files in order to ease and accelerate Malware Initial Assessment. The tool is used by Computer Emergency Response Teams (CERT), Security Operations Centers (SOC) and Digital-Forensic Labs worldwide. The development of the tool started in 2009 and is regularly updated.

The following slides provide an overview of the tool and its potential.

PeStudio Indicators