APPROACH FOR DETECTING ANTI-ANALYSIS MALWARE

Yang Zhao,Zeng Qingkai
DOI: https://doi.org/10.3969/j.issn.1000-386x.2013.04.001
2013-01-01
Abstract:This paper proposes a method to automatically detect anti-analysis malware.This approach records the traces of system calls and instructions executed by malware across four different analysis platform based on two monitoring and recording technologies.At first,the system call traces are compared.If a deviation exists,further comparison on instruction traces is needed to determine whether the root cause is anti-analysis or not.Experimental results have demonstrated that the approach can detect varies of analysis evasion technology.
What problem does this paper attempt to address?