Title
Malware Profiler Based on Innovative Behavior-Awareness Technique
Abstract
In order to steal valuable data, hackers are uninterrupted research and development new techniques to intrude computer systems. Opposite to hackers, security researchers are uninterrupted analysis and tracking new malicious techniques for protecting sensitive data. There are a lot of existing analyzers can be used to help security researchers to analyze and track new malicious techniques. However, these existing analyzers cannot provide sufficient information to security researchers to perform precise assessment and deep analysis. In this paper, we introduce a behavior-based malicious software profiler, named Holography platform, to assist security researchers to obtain sufficient information. Holography platform analyzes virtualization hardware data, including CPU instructions, CPU registers, memory data and disk data, to obtain high level behavior semantic of all running processes. High level behavior semantic can provide sufficient information to security researchers to perform precise assessment and deep analysis new malicious techniques, such as malicious advertisement attack(malvertising attack).
Year
DOI
Venue
2011
10.1109/PRDC.2011.53
PRDC
Keywords
Field
DocType
precise assessment,innovative behavior-awareness technique,disk data,behavior-based malicious software profiler,high level behavior semantic,malware profiler,sufficient information,deep analysis,holography platform,new malicious technique,malicious advertisement attack,security researcher,dynamic analysis,web pages,html,data analysis,holography,virtual machine,virtualisation,topology,malware
Virtualization,Virtual machine,Web page,Computer security,Computer science,Hacker,Malware,Processor register,Distributed computing
Conference
Citations 
PageRank 
References 
2
0.37
4
Authors
5
Name
Order
Citations
PageRank
Shih-yao Dai1404.33
Yarochkin Fyodor2122.22
Sy-Yen Kuo32304245.46
Mingwei Wu413819.05
Yennun Huang5738106.38