A Malware Obfuscation AI Technique to Evade Antivirus Detection in Counter Forensic Domain
Data obfuscation is the process of converting a constant or a variable into computational results of several constants to make it hard for the files to be detected or analyzed by anti-malware engines. In recent years, malicious based attacks are considered as one of the highest internet threats; as the majority of internet users depend on antivirus software as a protection tool, attackers use obfuscation techniques to achieve high evasion rates against different antiviruses. In this paper, we introduce multiple techniques consists of four stages that aid a malware; to avoid anti-malware tools, these techniques were mainly developed to provide a high evasion rate against anti-malware systems via dynamic analysis techniques. The evasion rate success of our samples were tested through (Kaspersky, Virustotal and Virusscan), then the result of our experiment were compared with other obfuscation techniques to stand on the success level of the experiment as well as extracting the strength and weakness points for any possible future works.
Code (1)
Similar Papers 제목 키워드 기반
Adapting Novelty towards Generating Antigens for Antivirus systems
It is well known that anti-malware scanners depend on malware signatures to identify malware. However, even minor modifications to malware code structure results in a change in the malware signature thus enabling the var…
Evolutionary AlgorithmsMalware AnalysisMalware DetectionHAPSSA: Holistic Approach to PDF Malware Detection Using Signal and Statistical Analysis
Malicious PDF documents present a serious threat to various security organizations that require modern threat intelligence platforms to effectively analyze and characterize the identity and behavior of PDF malware. State…
Malware DetectionLight up that Droid! On the Effectiveness of Static Analysis Features against App Obfuscation for Android Malware Detection
Malware authors have seen obfuscation as the mean to bypass malware detectors based on static analysis features. For Android, several studies have confirmed that many anti-malware products are easily evaded with simple p…
Android Malware DetectionMalware DetectionStealing and Evading Malware Classifiers and Antivirus at Low False Positive Conditions
Model stealing attacks have been successfully used in many machine learning domains, but there is little understanding of how these attacks work against models that perform malware detection. Malware detection and, in ge…
Active LearningMalware DetectionModel extractionEvadeDroid: A Practical Evasion Attack on Machine Learning for Black-box Android Malware Detection
Over the last decade, researchers have extensively explored the vulnerabilities of Android malware detectors to adversarial examples through the development of evasion attacks; however, the practicality of these attacks …
Adversarial AttackAndroid Malware DetectionMalware DetectionMORPH