Design issues of an isolated sandbox used to analyze malwares

被引:0
|
作者
Miwa, Shinsuke [1 ,3 ]
Miyachi, Toshiyuki [2 ,3 ]
Eto, Masashi [1 ]
Yoshizumi, Masashi [2 ,4 ]
Shinoda, Yoichi [1 ,2 ,3 ]
机构
[1] Natl Inst Informat & Commun Technol, Informat Secur Res Ctr, 4-2-1 Nukui Kitamachi, Koganei, Tokyo 1848795, Japan
[2] Natl Inst Informat & Commun Technol, Hokuriku Res Ctr, Nomicity, Ishikawa, Japan
[3] Japan Adv Inst Sci &Technol, Inter Res Ctr, Nomi, Ishikawa, Japan
[4] Japan Adv Inst Sci &Technol, Sch Informat Sci, Nomi, Ishikawa, Japan
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Recent viruses, worms, and bots, called malwares, often have anti-analysis functions such as mechanisms that confirm connectivity to certain Internet hosts and detect virtualized environments. We discuss how malwares can be kept alive in an analyzing environment by disabling their anti-analyzing mechanisms. To avoid any impacts to/from the Internet, we conclude that analyzing environments should be disconnected from the Internet but must be able to make malwares believe that they are connected to the real Internet. We also conclude that, for executing environments to analyze anti-virtualization malwares, they should not be virtualized but must be as easily reconstructable as a virtualized environment. To reconcile these cross-purposes, we propose an approach that consists of a mimetic Internet and a malware incubator with swappable actual nodes. We implemented a prototype system and conducted an experiment to test the adequacy of our approach.
引用
收藏
页码:13 / +
页数:3
相关论文
共 50 条
  • [41] SOFTWARE HELPS DESIGN, ANALYZE FILTERS
    不详
    MICROWAVES & RF, 1986, 25 (09) : 204 - 204
  • [42] How to Design and Analyze Persistent Phosphors?
    Ueda, Jumpei
    BULLETIN OF THE CHEMICAL SOCIETY OF JAPAN, 2021, 94 (12) : 2807 - 2821
  • [43] Analyze and design a cascode MESFET mixer
    de la Fuente, ML
    Pascual, JP
    Artal, E
    MICROWAVES & RF, 1998, 37 (05) : 129 - +
  • [44] DESIGN AND ANALYZE PLLS ON A PROGRAMMABLE CALCULATOR
    FADRHONS, J
    EDN MAGAZINE-ELECTRICAL DESIGN NEWS, 1980, 25 (05): : 135 - 142
  • [45] TEACHING EFL LEARNERS TO ANALYZE CONCEPTS: THEORETICAL AND METHODOLOGICAL ISSUES
    Akimtseva, Yulia
    Khramchenko, Dmitry
    Razoryonov, Dmitry
    Bulaeva, Natalia
    11TH INTERNATIONAL CONFERENCE OF EDUCATION, RESEARCH AND INNOVATION (ICERI2018), 2018, : 9739 - 9744
  • [46] SANDBOX MODEL USED TO EXAMINE STRESS DISTRIBUTION AROUND A SIMULATED LONGWALL COAL-FACE
    HARRIS, GW
    INTERNATIONAL JOURNAL OF ROCK MECHANICS AND MINING SCIENCES, 1974, 11 (08): : 325 - 335
  • [47] Classify and Analyze the Security Issues and Challenges in Mobile banking in Uzbekistan
    Abdullaev, Azamjon
    Al-Absi, Mohammed Abdulhakim
    Al-Absi, Ahmed Abdulhakim
    Sain, Mangal
    Lee, Hoon Jae
    2020 22ND INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT): DIGITAL SECURITY GLOBAL AGENDA FOR SAFE SOCIETY!, 2020, : 1211 - 1217
  • [48] A strategy to analyze soft reliability issues detected by Iddq measurements
    Oesterreicher, I.
    Nowak, C.
    Eckl, S.
    Tippelt, B.
    Werner, W.
    IPFA 2007: PROCEEDINGS OF THE 14TH INTERNATIONAL SYMPOSIUM ON THE PHYSICAL & FAILURE ANALYSIS OF INTEGRATED CIRCUITS, 2007, : 48 - +
  • [49] Using the Defining Issues Test to Analyze the Development of Moral Judgment
    Sakurai, Ikuo
    JAPANESE JOURNAL OF EDUCATIONAL PSYCHOLOGY, 2011, 59 (02): : 155 - 167
  • [50] COMPLEX POLARIZABILITY AS USED TO ANALYZE DIELECTRIC-RELAXATION MEASUREMENTS
    MARTINEZ, ES
    DIAZCALLEJA, R
    GUNSSER, W
    COLLOID AND POLYMER SCIENCE, 1992, 270 (02) : 146 - 153