Title :
Toward Automated Dynamic Malware Analysis Using CWSandbox
Author :
Willems, Carsten ; Holz, Thorsten ; Freiling, Felix
Author_Institution :
Mannheim Univ.
Abstract :
Malware is notoriously difficult to combat because it appears and spreads so quickly. In this article, we describe the design and implementation of CWSandbox, a malware analysis tool that fulfills our three design criteria of automation, effectiveness, and correctness for the Win32 family of operating systems
Keywords :
invasive software; supervisory programs; CWSandbox; Win32; computer operating system; dynamic malware analysis; Analytical models; Computational modeling; Computer displays; Computer security; Computer simulation; Image analysis; Joining processes; Monitoring; Performance analysis; Privacy; API hooking; CWSandbox; DLL injection; attacks; malware analysis and detection; security;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSP.2007.45