liu.seSearch for publications in DiVA
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • harvard1
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Automatic behavioural analysis of malware
Linköping University, Department of Computer and Information Science.
2010 (English)Independent thesis Basic level (degree of Bachelor), 15 credits / 22,5 HE creditsStudent thesis
Abstract [en]

With malware becoming more and more diused and at the same time more sophisticatedin its attack techniques, countermeasures need to be set up so that new kinds ofthreats can be identied and dismantled in the shortest possible time, before they causeharm to the system under attack. With new behaviour patterns like the one shown bypolymorphic and metamorphic viruses, static analysis is not any more a reliable wayto detect those threats, and behaviour analysis seems a good candidate to ght againstthe next-generation families of viruses. In this project, we describe a methodology toanalyze and categorize binaries solely on the basis of their behaviour, in terms of theirinteraction with the Operating System, other processes and network. The approach canstrengten host-based intrusion detection systems by a timely classication of unkownbut similar malware code. It has been evaluated on a dataset from the research communityand tried on a smaller data set from local companies collected at University ofMondragone.

Place, publisher, year, edition, pages
2010. , 36 p.
National Category
Engineering and Technology
Identifiers
URN: urn:nbn:se:liu:diva-64103ISRN: LITH-IDA/ERASMUS-A--10/002--SEOAI: oai:DiVA.org:liu-64103DiVA: diva2:386812
Presentation
, Home
Uppsok
Technology
Supervisors
Available from: 2011-01-20 Created: 2011-01-13 Last updated: 2011-01-20Bibliographically approved

Open Access in DiVA

fulltext(897 kB)246 downloads
File information
File name FULLTEXT01.pdfFile size 897 kBChecksum SHA-512
5c0bb5958b1c8f4283b1690ca29cb5b8ef193904cbe230d64d06b8f2bcd71dffc4eb3c1f25ede6ecccb955cc03a7f94f81c8fab5930a4a76ed6837dbd584e82a
Type fulltextMimetype application/pdf

By organisation
Department of Computer and Information Science
Engineering and Technology

Search outside of DiVA

GoogleGoogle Scholar
Total: 246 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

urn-nbn

Altmetric score

urn-nbn
Total: 236 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • harvard1
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf