Design and Implementation of Malware Automated Analysis Tool Based on Behavior Analysis

LIU Heng,WEN Wei-ping,WAN Zheng-su
DOI: https://doi.org/10.3969/j.issn.1671-1122.2011.07.005
2011-01-01
Abstract:Static analysis and dynamic analysis are the two common analysis methods in malware analysis. With the anti-debugging, program packers, code obfuscation, polymorphism and variants such technologies coming out, the limitations of static analysis methods become more and more. Here is a tool to dynamic analysis Malware Code based on kernel callback and Regular Expressions, demonstrate it’s capabilities by analyzing the Fujacks .As a result ,improved the efficiency of the tool in the automating analysis.
What problem does this paper attempt to address?