earticle

논문검색

Technology Convergence (TC)

A study on Countermeasures by Detecting Trojan-type Downloader/Dropper Malicious Code

원문정보

초록

영어

There are various ways to be infected with malicious code due to the increase in Internet use, such as the web, affiliate programs, P2P, illegal software, DNS alteration of routers, word processor vulnerabilities, spam mail, and storage media. In addition, malicious codes are produced more easily than before through automatic generation programs due to evasion technology according to the advancement of production technology. In the past, the propagation speed of malicious code was slow, the infection route was limited, and the propagation technology had a simple structure, so there was enough time to study countermeasures. However, current malicious codes have become very intelligent by absorbing technologies such as concealment technology and self-transformation, causing problems such as distributed denial of service attacks (DDoS), spam sending and personal information theft. The existing malware detection technique, which is a signature detection technique, cannot respond when it encounters a malicious code whose attack pattern has been changed or a new type of malicious code. In addition, it is difficult to perform static analysis on malicious code to which code obfuscation, encryption, and packing techniques are applied to make malicious code analysis difficult. Therefore, in this paper, a method to detect malicious code through dynamic analysis and static analysis using Trojan-type Downloader/Dropper malicious code was showed, and suggested to malicious code detection and countermeasures.

목차

Abstract
1. INTRODUCTION
2. RELATED WORK
2.1 Dynamic Analysis
2.2 Static Analysis
3. MALICIOUS CODE ANALYSIS
3.1 Analysis Target
3.2 Malicious Code Execution Flowchart
3.3 Initial Analysis
3.4 Dynamic Analysis
3.5 Static Analysis
4. COUNTERMEASURES AND CONCLUSION
REFERENCES

저자정보

  • Hee Wan Kim Prof., Division of Computer Science & Engineering, Sahmyook Univ., Korea

참고문헌

자료제공 : 네이버학술정보

    함께 이용한 논문

      ※ 기관로그인 시 무료 이용이 가능합니다.

      • 4,000원

      0개의 논문이 장바구니에 담겼습니다.