NUST Institutional Repository

Automated malware analysis to identify data espionage and backdoor creation

Show simple item record

dc.contributor.author Javed, Azhar
dc.contributor.author Supervised by Dr. Baber Aslam
dc.date.accessioned 2020-10-26T06:54:38Z
dc.date.available 2020-10-26T06:54:38Z
dc.date.issued 2014-11
dc.identifier.other TIS-181
dc.identifier.other MSIS-11
dc.identifier.uri http://10.250.8.41:8080/xmlui/handle/123456789/4890
dc.description.abstract In the recent past, malwares have become a serious cyber security threat which has not only targeted individuals and organizations but has also threatened the cyber space of countries around the world. Amongst malware variants, Trojans designed for data espionage and backdoor creation dominates the threat landscape. This necessitate in depth study of these malwares with the scope of extracting static features like APIs, strings, IP Addresses, URLs, email addresses etc. by and large found in such mal codes. In this dissertation, an endeavored has been made to firstly establish a set of patterns, tagged as APIs and Strings persistently existent in these malwares by articulating an analysis framework. Presence of features in malware and benign dataset was checked and after assigning the weight to each feature, score is calculated. Later on using the percentile approach, threshold value for both (API and Mal String) feature set is determined. Secondly, keeping the feature set and threshold value as parameters, a methodology is proposed to automatically analyse the malwares designed for data espionage and backdoor creation. The proposed methodology was tested by using a separate dataset of malware and benign application and based on common performance attributes; it was compared with previous work in the relevant field. en_US
dc.language.iso en en_US
dc.publisher MCS en_US
dc.title Automated malware analysis to identify data espionage and backdoor creation en_US
dc.type Thesis en_US


Files in this item

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Advanced Search

Browse

My Account