首页> 外文会议>International Conference on Security and Cryptography >Evasive Windows Malware: Impact on Antiviruses and Possible Countermeasures
【24h】

Evasive Windows Malware: Impact on Antiviruses and Possible Countermeasures

机译:避免的Windows Malware:对抗病毒的影响以及可能的对策

获取原文

摘要

The perpetual opposition between antiviruses and malware leads both parties to evolve continuously. On the one hand, antiviruses put in place solutions that are more and more sophisticated and propose more complex detection techniques in addition to the classic signature analysis. This sophistication leads antiviruses to leave more traces of their presence on the machine they protect. To remain undetected as long as possible, malware can avoid executing within such environments by hunting down the modifications left by the antiviruses. This paper aims at determining the possibilities for malware to detect the antiviruses and then evaluating the efficiency of these techniques on a panel of antiviruses that are the most used nowadays. We then collect samples showing this kind of behavior and propose to evaluate a countermeasure that creates false artifacts, thus forcing malware to evade.
机译:防病毒和恶意软件之间的永久反对导致双方连续发展。 一方面,除了经典签名分析之外,抗病毒放置了更复杂的解决方案,并且还提出了更复杂的检测技术。 这种复杂性导致防病毒在他们保护的机器上留下更多的痕迹。 为了保持未被发现,只要可能,恶意软件可以避免通过捕捉防病毒留下的修改来在这种环境中执行。 本文旨在确定恶意软件检测抗病毒的可能性,然后在目前使用最多使用的抗病毒面板上评估这些技术的效率。 然后,我们收集显示这种行为的样本,并建议评估创造虚假文物的对策,从而强迫恶意软件逃避。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号