Design issues of an isolated sandbox used to analyze malwares

被引:0
|
作者
Miwa, Shinsuke [1 ,3 ]
Miyachi, Toshiyuki [2 ,3 ]
Eto, Masashi [1 ]
Yoshizumi, Masashi [2 ,4 ]
Shinoda, Yoichi [1 ,2 ,3 ]
机构
[1] Natl Inst Informat & Commun Technol, Informat Secur Res Ctr, 4-2-1 Nukui Kitamachi, Koganei, Tokyo 1848795, Japan
[2] Natl Inst Informat & Commun Technol, Hokuriku Res Ctr, Nomicity, Ishikawa, Japan
[3] Japan Adv Inst Sci &Technol, Inter Res Ctr, Nomi, Ishikawa, Japan
[4] Japan Adv Inst Sci &Technol, Sch Informat Sci, Nomi, Ishikawa, Japan
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Recent viruses, worms, and bots, called malwares, often have anti-analysis functions such as mechanisms that confirm connectivity to certain Internet hosts and detect virtualized environments. We discuss how malwares can be kept alive in an analyzing environment by disabling their anti-analyzing mechanisms. To avoid any impacts to/from the Internet, we conclude that analyzing environments should be disconnected from the Internet but must be able to make malwares believe that they are connected to the real Internet. We also conclude that, for executing environments to analyze anti-virtualization malwares, they should not be virtualized but must be as easily reconstructable as a virtualized environment. To reconcile these cross-purposes, we propose an approach that consists of a mimetic Internet and a malware incubator with swappable actual nodes. We implemented a prototype system and conducted an experiment to test the adequacy of our approach.
引用
收藏
页码:13 / +
页数:3
相关论文
共 50 条
  • [21] Casualty analyze in seismic design
    Lu, HS
    PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON EARTHQUAKE ENGINEERING: NEW FRONTIER AND RESEARCH TRANSFORMATION, 2004, : 153 - 156
  • [22] Isolated Sandbox Environment Architecture for Running Cognitive Psychological Experiments in Web Platforms
    Nikulchev, Evgeny
    Ilin, Dmitry
    Kolyasnikov, Pavel
    Magomedov, Shamil
    Alexeenko, Anna
    Kosenkov, Alexander N.
    Sokolov, Andrey
    Malykh, Artem
    Ismatullina, Victoria
    Malykh, Sergey
    FUTURE INTERNET, 2021, 13 (10):
  • [23] Analyze circulator design equations
    Harbater, Z
    MICROWAVES & RF, 2005, 44 (05) : 68 - +
  • [24] Design and Testing of a Convenient Benchtop Sandbox for Controlled Flow Experiments
    Bowen, Ian R.
    Devlin, J. F.
    Schillig, Peter C.
    GROUND WATER MONITORING AND REMEDIATION, 2012, 32 (04): : 87 - 91
  • [25] Oil and the macroeconomy: using wavelets to analyze old issues
    Aguiar-Conraria, Luis
    Soares, Maria Joana
    EMPIRICAL ECONOMICS, 2011, 40 (03) : 645 - 655
  • [26] Soft computing models to analyze atmospheric pollution issues
    Arroyo, Angel
    Corchado, Emilio
    Tricio, Veronica
    LOGIC JOURNAL OF THE IGPL, 2012, 20 (04) : 699 - 711
  • [27] Oil and the macroeconomy: using wavelets to analyze old issues
    Luís Aguiar-Conraria
    Maria Joana Soares
    Empirical Economics, 2011, 40 : 645 - 655
  • [28] Mining Web Query Logs to Analyze Political Issues
    Weber, Ingmar
    Garimella, Venkata Rama Kiran
    Borra, Erik
    PROCEEDINGS OF THE 3RD ANNUAL ACM WEB SCIENCE CONFERENCE, 2012, 2012, : 330 - 339
  • [29] Implementation issues on the design of current loops based on resonant regulators for isolated microgrids
    de Bosio, Federico
    Pastorelli, Michele
    de Souza Ribeiro, Luiz Antonio
    Freijedo, Francisco Daniel
    Guerrero, Josep Maria
    2016 18TH EUROPEAN CONFERENCE ON POWER ELECTRONICS AND APPLICATIONS (EPE'16 ECCE EUROPE), 2016,
  • [30] ASTRONOMICAL IMAGING CAN BE USED TO ANALYZE RESPONSE TO IMMUNOTHERAPY
    Berry, S.
    Giraldo, N. A.
    Green, B. F.
    Cottrell, T. R.
    Stein, J. E.
    Engle, E. L.
    CANCER DISCOVERY, 2021, 11 (08) : 1871 - 1871