DocumentCode
758978
Title
Toward Automated Dynamic Malware Analysis Using CWSandbox
Author
Willems, Carsten ; Holz, Thorsten ; Freiling, Felix
Author_Institution
Mannheim Univ.
Volume
5
Issue
2
fYear
2007
Firstpage
32
Lastpage
39
Abstract
Malware is notoriously difficult to combat because it appears and spreads so quickly. In this article, we describe the design and implementation of CWSandbox, a malware analysis tool that fulfills our three design criteria of automation, effectiveness, and correctness for the Win32 family of operating systems
Keywords
invasive software; supervisory programs; CWSandbox; Win32; computer operating system; dynamic malware analysis; Analytical models; Computational modeling; Computer displays; Computer security; Computer simulation; Image analysis; Joining processes; Monitoring; Performance analysis; Privacy; API hooking; CWSandbox; DLL injection; attacks; malware analysis and detection; security;
fLanguage
English
Journal_Title
Security & Privacy, IEEE
Publisher
ieee
ISSN
1540-7993
Type
jour
DOI
10.1109/MSP.2007.45
Filename
4140988
Link To Document