• DocumentCode
    758978
  • Title

    Toward Automated Dynamic Malware Analysis Using CWSandbox

  • Author

    Willems, Carsten ; Holz, Thorsten ; Freiling, Felix

  • Author_Institution
    Mannheim Univ.
  • Volume
    5
  • Issue
    2
  • fYear
    2007
  • Firstpage
    32
  • Lastpage
    39
  • Abstract
    Malware is notoriously difficult to combat because it appears and spreads so quickly. In this article, we describe the design and implementation of CWSandbox, a malware analysis tool that fulfills our three design criteria of automation, effectiveness, and correctness for the Win32 family of operating systems
  • Keywords
    invasive software; supervisory programs; CWSandbox; Win32; computer operating system; dynamic malware analysis; Analytical models; Computational modeling; Computer displays; Computer security; Computer simulation; Image analysis; Joining processes; Monitoring; Performance analysis; Privacy; API hooking; CWSandbox; DLL injection; attacks; malware analysis and detection; security;
  • fLanguage
    English
  • Journal_Title
    Security & Privacy, IEEE
  • Publisher
    ieee
  • ISSN
    1540-7993
  • Type

    jour

  • DOI
    10.1109/MSP.2007.45
  • Filename
    4140988