Design issues of an isolated sandbox used to analyze malwares

被引:0
|
作者
Miwa, Shinsuke [1 ,3 ]
Miyachi, Toshiyuki [2 ,3 ]
Eto, Masashi [1 ]
Yoshizumi, Masashi [2 ,4 ]
Shinoda, Yoichi [1 ,2 ,3 ]
机构
[1] Natl Inst Informat & Commun Technol, Informat Secur Res Ctr, 4-2-1 Nukui Kitamachi, Koganei, Tokyo 1848795, Japan
[2] Natl Inst Informat & Commun Technol, Hokuriku Res Ctr, Nomicity, Ishikawa, Japan
[3] Japan Adv Inst Sci &Technol, Inter Res Ctr, Nomi, Ishikawa, Japan
[4] Japan Adv Inst Sci &Technol, Sch Informat Sci, Nomi, Ishikawa, Japan
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Recent viruses, worms, and bots, called malwares, often have anti-analysis functions such as mechanisms that confirm connectivity to certain Internet hosts and detect virtualized environments. We discuss how malwares can be kept alive in an analyzing environment by disabling their anti-analyzing mechanisms. To avoid any impacts to/from the Internet, we conclude that analyzing environments should be disconnected from the Internet but must be able to make malwares believe that they are connected to the real Internet. We also conclude that, for executing environments to analyze anti-virtualization malwares, they should not be virtualized but must be as easily reconstructable as a virtualized environment. To reconcile these cross-purposes, we propose an approach that consists of a mimetic Internet and a malware incubator with swappable actual nodes. We implemented a prototype system and conducted an experiment to test the adequacy of our approach.
引用
收藏
页码:13 / +
页数:3
相关论文
共 50 条
  • [31] Steps Used to Analyze the Failure of an Exterior Suspended Ceiling
    Komm, David S.
    Hollander, Kevin W.
    Beebe, Eric A.
    Mcspadden, Hugh J.
    PROGRESS IN SAFETY SCIENCE AND TECHNOLOGY, VOL VII, PTS A AND B, 2008, 7 : 1795 - 1804
  • [32] Recent advances in the methods and applications used to analyze eicosanoids
    Yang Chan
    Mai Danti
    Pan Zhemin
    Xue Yun
    Wang Yan
    Yan Chao
    CHINESE JOURNAL OF CHROMATOGRAPHY, 2016, 34 (05) : 449 - 455
  • [33] CERAMIC COATINGS USED TO ANALYZE STRESS AT TURBINE TEMPERATURES
    TYRER, R
    EXPERIMENTAL MECHANICS, 1971, 11 (05) : N36 - &
  • [34] Geospatial processing techniques used to analyze forest in Romania
    Teodorescu, Paul
    Zamfir, Madalina
    ROMANIAN JOURNAL OF INFORMATION TECHNOLOGY AND AUTOMATIC CONTROL-REVISTA ROMANA DE INFORMATICA SI AUTOMATICA, 2022, 32 (01): : 123 - 136
  • [35] LASERS USED TO ANALYZE RARE-EARTH ELEMENTS
    不详
    CHEMICAL & ENGINEERING NEWS, 1982, 60 (11) : 30 - 30
  • [36] COMPARISON OF VARIOUS METHODS USED TO ANALYZE CRYSTALLOGRAPHIC TEXTURE
    ESLING, C
    BUNGE, H
    MULLER, J
    MEMOIRES ET ETUDES SCIENTIFIQUES DE LA REVUE DE METALLURGIE, 1987, 84 (09): : 430 - 430
  • [37] Comparison of selected methods used to analyze bipolar disorder
    Wyszynski, DF
    Doetsch, JP
    Pugh, EW
    Bailey-Wilson, JE
    GENETIC EPIDEMIOLOGY, 1997, 14 (06) : 705 - 710
  • [38] Design Issues for Stereo Vision Systems Used on Tele-operated Robotic Platforms
    Edmondson, Richard
    Vaden, Justin
    Hyatt, Brian
    Morris, James
    Pezzaniti, J. Larry
    Chenault, David B.
    Tchon, Joe
    Barnidge, Tracy
    Kaufman, Seth
    Pettijohn, Brad
    STEREOSCOPIC DISPLAYS AND APPLICATIONS XXI, 2010, 7524
  • [39] USED OIL ISSUES AND OPPORTUNITIES
    TEINTZE, LM
    ABSTRACTS OF PAPERS OF THE AMERICAN CHEMICAL SOCIETY, 1992, 204 : 60 - PETR
  • [40] A Model to Analyze the Design of the Toll Plaza
    Huang, Ran
    PROCEEDINGS OF THE ADVANCES IN MATERIALS, MACHINERY, ELECTRICAL ENGINEERING (AMMEE 2017), 2017, 114 : 434 - 440