Constructing polymorphic virus analysis system using behavior detection approach

The current antivirus products were only able to detect the existence of viruses, but it could not record the activity or behavior of viruses. Inability of antivirus to record the viruses' behavior made difficult certain users who want to know the behavior of viruses as well as to know the cate...

Full description

Saved in:
Bibliographic Details
Main Author: Rasrastara, Fauzi Adi
Format: Thesis
Language:English
Published: 2010
Subjects:
Online Access:http://eprints.utem.edu.my/id/eprint/14530/1/Constructing_polymorphic_virus_analysis_system_using_behavior_detection_approach.pdf
http://eprints.utem.edu.my/id/eprint/14530/
http://library.utem.edu.my:8000/elmu/index.jsp?module=webopac-d&action=fullDisplayRetriever.jsp&szMaterialNo=0000063239
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.utem.eprints.14530
record_format eprints
spelling my.utem.eprints.145302016-01-29T07:21:36Z http://eprints.utem.edu.my/id/eprint/14530/ Constructing polymorphic virus analysis system using behavior detection approach Rasrastara, Fauzi Adi Q Science (General) QA Mathematics The current antivirus products were only able to detect the existence of viruses, but it could not record the activity or behavior of viruses. Inability of antivirus to record the viruses' behavior made difficult certain users who want to know the behavior of viruses as well as to know the category or classification of certain viruses. Actually, there were several architectures or tools proposed, but they still could not answer the needs of those certain users who want to know the classification of virus that they test.In this project, we studied the current types of viruses as well as current virus monitoring and analysis system. This study came up with the problems that become basic of this research.Here, we proposed an architecture and a system, which are able to monitor the viruses' behavior and classify those viruses whether as a traditional or polymorphic virus. Preliminary research was conducted to get the current virus behaviors and to find out the certain parameters, which are usually used by viruses to attack the computer target. Finally, we applied "test bed environment" to test our system by releasing several viruses in a real environment, and attempt to capture their behaviors. These activities were followed by generating the conclusion that the tested or monitored virus is classified as a traditional or polymorphic virus. 2010 Thesis NonPeerReviewed text en http://eprints.utem.edu.my/id/eprint/14530/1/Constructing_polymorphic_virus_analysis_system_using_behavior_detection_approach.pdf Rasrastara, Fauzi Adi (2010) Constructing polymorphic virus analysis system using behavior detection approach. Masters thesis, UTeM. http://library.utem.edu.my:8000/elmu/index.jsp?module=webopac-d&action=fullDisplayRetriever.jsp&szMaterialNo=0000063239
institution Universiti Teknikal Malaysia Melaka
building UTEM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknikal Malaysia Melaka
content_source UTEM Institutional Repository
url_provider http://eprints.utem.edu.my/
language English
topic Q Science (General)
QA Mathematics
spellingShingle Q Science (General)
QA Mathematics
Rasrastara, Fauzi Adi
Constructing polymorphic virus analysis system using behavior detection approach
description The current antivirus products were only able to detect the existence of viruses, but it could not record the activity or behavior of viruses. Inability of antivirus to record the viruses' behavior made difficult certain users who want to know the behavior of viruses as well as to know the category or classification of certain viruses. Actually, there were several architectures or tools proposed, but they still could not answer the needs of those certain users who want to know the classification of virus that they test.In this project, we studied the current types of viruses as well as current virus monitoring and analysis system. This study came up with the problems that become basic of this research.Here, we proposed an architecture and a system, which are able to monitor the viruses' behavior and classify those viruses whether as a traditional or polymorphic virus. Preliminary research was conducted to get the current virus behaviors and to find out the certain parameters, which are usually used by viruses to attack the computer target. Finally, we applied "test bed environment" to test our system by releasing several viruses in a real environment, and attempt to capture their behaviors. These activities were followed by generating the conclusion that the tested or monitored virus is classified as a traditional or polymorphic virus.
format Thesis
author Rasrastara, Fauzi Adi
author_facet Rasrastara, Fauzi Adi
author_sort Rasrastara, Fauzi Adi
title Constructing polymorphic virus analysis system using behavior detection approach
title_short Constructing polymorphic virus analysis system using behavior detection approach
title_full Constructing polymorphic virus analysis system using behavior detection approach
title_fullStr Constructing polymorphic virus analysis system using behavior detection approach
title_full_unstemmed Constructing polymorphic virus analysis system using behavior detection approach
title_sort constructing polymorphic virus analysis system using behavior detection approach
publishDate 2010
url http://eprints.utem.edu.my/id/eprint/14530/1/Constructing_polymorphic_virus_analysis_system_using_behavior_detection_approach.pdf
http://eprints.utem.edu.my/id/eprint/14530/
http://library.utem.edu.my:8000/elmu/index.jsp?module=webopac-d&action=fullDisplayRetriever.jsp&szMaterialNo=0000063239
_version_ 1665905595532705792
score 13.214268