Yanis Beqqali, Hamza Es Sadik, Francine Herrmann, Fabrice Sabatier
{"title":"恶意软件的双重反分析(DAA)分析方法","authors":"Yanis Beqqali, Hamza Es Sadik, Francine Herrmann, Fabrice Sabatier","doi":"10.1109/ECAI46879.2019.9042164","DOIUrl":null,"url":null,"abstract":"Most modern malware use anti-analyze techniques to escape existing detection and analysis solutions. We designed a new methodology DAA to analyze malwares even when they use this predisposition. To this end, we have analyzed several existing approaches aimed to evade malware in order to use the most effective ones. A new open source software tool has been designed and developed. We tested our software with more than 300000 LHS's malwares. This implementation allowed us to confirm the importance of studying the behaviour of malwares in an environment able to counter the anti-analysis techniques.","PeriodicalId":285780,"journal":{"name":"2019 11th International Conference on Electronics, Computers and Artificial Intelligence (ECAI)","volume":"18 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-06-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Malware's Double Anti Analysis (DAA) Analysis Methodology\",\"authors\":\"Yanis Beqqali, Hamza Es Sadik, Francine Herrmann, Fabrice Sabatier\",\"doi\":\"10.1109/ECAI46879.2019.9042164\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Most modern malware use anti-analyze techniques to escape existing detection and analysis solutions. We designed a new methodology DAA to analyze malwares even when they use this predisposition. To this end, we have analyzed several existing approaches aimed to evade malware in order to use the most effective ones. A new open source software tool has been designed and developed. We tested our software with more than 300000 LHS's malwares. This implementation allowed us to confirm the importance of studying the behaviour of malwares in an environment able to counter the anti-analysis techniques.\",\"PeriodicalId\":285780,\"journal\":{\"name\":\"2019 11th International Conference on Electronics, Computers and Artificial Intelligence (ECAI)\",\"volume\":\"18 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-06-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2019 11th International Conference on Electronics, Computers and Artificial Intelligence (ECAI)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ECAI46879.2019.9042164\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 11th International Conference on Electronics, Computers and Artificial Intelligence (ECAI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ECAI46879.2019.9042164","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Malware's Double Anti Analysis (DAA) Analysis Methodology
Most modern malware use anti-analyze techniques to escape existing detection and analysis solutions. We designed a new methodology DAA to analyze malwares even when they use this predisposition. To this end, we have analyzed several existing approaches aimed to evade malware in order to use the most effective ones. A new open source software tool has been designed and developed. We tested our software with more than 300000 LHS's malwares. This implementation allowed us to confirm the importance of studying the behaviour of malwares in an environment able to counter the anti-analysis techniques.