Using Entropy Analysis to Find Encrypted and Packed Malware 论文

2007IEEE Security & Privacy引用 360
Advanced Malware Detection TechniquesNetwork Security and Intrusion DetectionChaos-based Image/Signal Encryption

详细信息

发表期刊/会议
IEEE Security & Privacy
发表日期
2007-03-01
发表年份
2007

关键词

Advanced Malware Detection TechniquesNetwork Security and Intrusion DetectionChaos-based Image/Signal Encryption

摘要

In statically analyzing large sample collections, packed and encrypted malware pose a significant challenge to automating the identification of malware attributes and functionality. Entropy analysis examines the statistical variation in malware executables, enabling analysts to quickly and efficiently identify packed and encrypted samples