DocumentCode :
2053230
Title :
Mechanisms of Polymorphic and Metamorphic Viruses
Author :
Li, Xufang ; Loh, Peter K K ; Tan, Freddy
Author_Institution :
Comput. Security Lab., Nanyang Technol. Univ., Singapore, Singapore
fYear :
2011
fDate :
12-14 Sept. 2011
Firstpage :
149
Lastpage :
154
Abstract :
Malware has been generally accepted as one of the top security threats to computer systems around the globe. As malware evolves at a tremendous pace and demonstrates new ways to exploit, infect and victimize the computer systems of enterprises and businesses, remaining economically viable is becoming increasingly difficult. The new trends of malware development are focused on the use of complex and sophisticated code to obstruct analysis as well as spoofing contemporary anti-virus scanners. Polymorphic and metamorphic viruses use the obfuscation techniques to obstruct deep static analysis and defeat dynamic emulators. Malware may also employ metamorphism-based methods, including encryption and decryption engines, multi-packer, garbage code insertion, instruction permutation, code transformation, anti-debugging and virtual machine, registry modification and polymorphic engines. The structural mechanisms of both polymorphic and metamorphic viruses will be presented and discussed in this paper. Finally, the new complex computer viruses such as W32/Fujacks and W32/Vundo were researched as well.
Keywords :
computer viruses; cryptography; program debugging; program diagnostics; storage management; virtual machines; W32/Fujacks; W32/Vundo; anti-debugging; anti-virus scanners; code transformation; complex code; computer systems; decryption engines; deep static analysis; defeat dynamic emulators; encryption engines; garbage code insertion; instruction permutation; malware development; malware has; metamorphic virus mechanism; multipacker; obfuscation techniques; polymorphic engines; polymorphic virus mechanism; registry modification; security threats; sophisticated code; structural mechanisms; virtual machine; Computers; Cryptography; Engines; Malware; Viruses (medical); garbage; metamorphism; obfuscation; permutation; polymorphism; structure;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Intelligence and Security Informatics Conference (EISIC), 2011 European
Conference_Location :
Athens
Print_ISBN :
978-1-4577-1464-1
Electronic_ISBN :
978-0-7695-4406-9
Type :
conf
DOI :
10.1109/EISIC.2011.77
Filename :
6061171
Link To Document :
بازگشت