A Framework for Defining Malware Behavior Using Run Time Analysis and Resource Monitoring

作者: Mohamad Fadli Zolkipli , Aman Jantan

DOI: 10.1007/978-3-642-22170-5_18

关键词:

摘要: Malware analysis is the process to investigate malware operation in order learn and understand that malicious intent. Two common techniques can be used analyze are static dynamic analysis. Nowadays, many writers try avoid security checking by implement such as anti-reverse engineering, packing encryption. It was make difficult implemented. In this paper, we propose a new framework using approach. This will define behavior through run time resource monitoring. The contribution of study for defining based on target malware.

参考文章(20)
N. Tawbi, M. Debbabi, J. Desharnais, Y. Lavoie, J. Bergeron, M. M. Erhioui, Static Detection of Malicious Code in Executable Programs ,(2000)
Aditya P. Mathur, Nwokedi Idika, A Survey of Malware Detection Techniques ,(2007)
Hengli Zhao, Ming Xu, Ning Zheng, Jingjing Yao, Qiang Ho, Malicious Executables Classification Based on Behavioral Factor Analysis international conference on e-education, e-business, e-management and e-learning. pp. 502- 506 ,(2010) , 10.1109/IC4E.2010.78
Christian Seifert, Ramon Steenson, Ian Welch, Peter Komisarczuk, Barbara Endicott-Popovsky, Capture - A behavioral analysis tool for applications and documents digital forensic research workshop. ,vol. 4, pp. 23- 30 ,(2007) , 10.1016/J.DIIN.2007.06.003
Engin Kirda, Davide Balzarotti, Ulrich Bayer, Imam Habibi, Christopher Kruegel, A view on current malware behaviors usenix conference on large scale exploits and emergent threats. pp. 8- 8 ,(2009)
Syed Bilal Mehdi, Ajay Kumar Tanwani, Muddassar Farooq, IMAD Proceedings of the 11th Annual conference on Genetic and evolutionary computation - GECCO '09. pp. 1553- 1560 ,(2009) , 10.1145/1569901.1570109
Gérard Wagener, Radu State, Alexandre Dulaunoy, Malware behaviour analysis Journal in Computer Virology. ,vol. 4, pp. 279- 287 ,(2008) , 10.1007/S11416-007-0074-9
Purui Su, Lingyun Ying, Dengguo Feng, Exploring Malware Behaviors Based on Environment Constitution computational intelligence and security. ,vol. 1, pp. 320- 325 ,(2008) , 10.1109/CIS.2008.130
Carsten Willems, Thorsten Holz, Felix Freiling, Toward Automated Dynamic Malware Analysis Using CWSandbox ieee symposium on security and privacy. ,vol. 5, pp. 32- 39 ,(2007) , 10.1109/MSP.2007.45
Ulrich Bayer, Engin Kirda, Christopher Kruegel, Improving the efficiency of dynamic malware analysis Proceedings of the 2010 ACM Symposium on Applied Computing - SAC '10. pp. 1871- 1878 ,(2010) , 10.1145/1774088.1774484