کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
4955618 1364633 2017 9 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Insights gained from constructing a large scale dynamic analysis platform
ترجمه فارسی عنوان
بینش ها از ساخت یک پلت فرم تحلیل پویا در مقیاس بزرگ به دست آمد
کلمات کلیدی
بد افزار، تجزیه و تحلیل پویا، گودال ماسهبازی،
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
چکیده انگلیسی

As the number of malware samples found increases exponentially each year, there is a need for systems that can dynamically analyze thousands of malware samples per day. These systems should be reliable, scalable, and simple to use by other systems and malware analysts. When handling thousands of malware, reprocessing a small percentage of the malware due to errors can be devastating; a reliable system avoids wasting resources by reducing the number of errors.In this paper, we describe our scalable dynamic analysis platform, perform experiments on the platform, and provide lessons we have learned through the process. The platform uses Cuckoo sandbox for dynamic analysis and is improved to process malware as quickly as possible without losing valuable information. Experiments were performed to improve the configuration of the system's components and help improve the accuracy of the dynamic analysis. Lessons learned presented in the paper may aid others in the development of similar dynamic analysis systems.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Digital Investigation - Volume 22, Supplement, August 2017, Pages S48-S56
نویسندگان
, , , , , ,