An Efficient Tactic for Analysis and Evaluation of Malware Dump File Using the Volatility Tool

Amit Kumar Singh,Swapnesh Taterh,Uddalak Mitra
DOI: https://doi.org/10.1007/s42979-023-01844-8
2023-06-18
SN Computer Science
Abstract:Malware refers to "malicious software" which is designed to disrupt or steal data from a computer, network or server. Malware-based attacks are significantly on the rise, among which ransomware attacks are quite prominent and capable of catastrophic damages. It is essential to understand the behavior, functionality, patterns and activities for the successful mitigation of malware attacks which are rapidly evolving. This research deals with the analysis of malware. The researched is centered upon the Volatility tool which is used for the dynamic malware analysis. Using this tool, the infected memory dump files are analyzed for the understanding of the malware functionality and patterns. The Volatility tool's main function is to identify the users and their techniques along with the examination of deleted digital evidence from volatile memory.
What problem does this paper attempt to address?