Ανάλυση ιομορφικού λογισμικού: υλοποίηση εργαστηριακής λύσης αυτόματης ανάλυσης συμπεριφοράς ιομορφικού λογισμικού
Φύσαρης, Γεώργιος Ι.
SubjectComputer security ; Malware ; Διαδίκτυο (Internet) -- Μέτρα ασφαλείας ; Ηλεκτρονικοί υπολογιστές -- Δίκτυα -- Μέτρα ασφαλείας
IT Security is constantly threatened by the rapid creation and spreading of new malicious software (malware). On the one hand the malware authors are creating new malware with additional capabilities and improved efficiency using the most modern sophisticated technical attacks. Researchers and antivirus companies, on the other hand, are challenged by instant and quick analysis of a large amount of malware spreading over the internet. In order to detect and eliminate their spreading, they implement new tools and apply new techniques. By applying methods of automated behavior analysis, they achieve minimization of the required time of malware analysis. In this thesis, the new types of modern malware are presented and an analysis method is proposed which aims at revealing their behavior and their techniques. Furthermore a system has been implemented in order to provide automatic behavior analysis based on open source tools. In addition, an unknown and recently discovered malware sample was analyzed in order to evaluate the results of this system. Newer mechanisms are implemented for the visualization of the analysis procedure, for the detection of malicious behavior and for the analysis of the dropped files.