Database of Malware: Collection, Analysis and Evaluation

碩士 === 國立臺北大學 === 資訊管理研究所 === 101 === This research aims at building a malware collection, analysis and evaluation platform. In before times, if we wanted to test the performance of anti-virus, we had to build the “sample bank” which means a set of malware to test the antivirus in order to ensuring...

Full description

Bibliographic Details
Main Authors: CHU YEN HSI, 朱彥曦
Other Authors: Tseng Chun Yuan
Format: Others
Language:en_US
Published: 2013
Online Access:http://ndltd.ncl.edu.tw/handle/58712803192871542798
id ndltd-TW-101NTPU0396005
record_format oai_dc
spelling ndltd-TW-101NTPU03960052015-10-13T22:12:37Z http://ndltd.ncl.edu.tw/handle/58712803192871542798 Database of Malware: Collection, Analysis and Evaluation 惡意軟體資料庫:收集、分析與評鑑 CHU YEN HSI 朱彥曦 碩士 國立臺北大學 資訊管理研究所 101 This research aims at building a malware collection, analysis and evaluation platform. In before times, if we wanted to test the performance of anti-virus, we had to build the “sample bank” which means a set of malware to test the antivirus in order to ensuring that anti-virus is capable of detection. While how to select proper malware to group sample bank has become a major issue. To deal with this, we have established a platform with proactive malware collection, analysis and evaluation. Through massive collection we can acquire various suspicious files and upload these files to VirusTotal for detection. The detection result will be taken as basis to evaluate the files. We have also built a new malware evaluation mechanism to classify the malware, which was found based on detection result. The suspicious files collected will be evaluated and the result shows the new evaluation mechanism has outputted a set of highly malicious and changed suspicious files which might be suitable for examining the anti-viruses. With automatically functioned, the platform can get and have sample evaluated rapidly for further malware classification based on evaluation result in order to building well-quality malware question bank. Tseng Chun Yuan 曾俊元 2013 學位論文 ; thesis 37 en_US
collection NDLTD
language en_US
format Others
sources NDLTD
description 碩士 === 國立臺北大學 === 資訊管理研究所 === 101 === This research aims at building a malware collection, analysis and evaluation platform. In before times, if we wanted to test the performance of anti-virus, we had to build the “sample bank” which means a set of malware to test the antivirus in order to ensuring that anti-virus is capable of detection. While how to select proper malware to group sample bank has become a major issue. To deal with this, we have established a platform with proactive malware collection, analysis and evaluation. Through massive collection we can acquire various suspicious files and upload these files to VirusTotal for detection. The detection result will be taken as basis to evaluate the files. We have also built a new malware evaluation mechanism to classify the malware, which was found based on detection result. The suspicious files collected will be evaluated and the result shows the new evaluation mechanism has outputted a set of highly malicious and changed suspicious files which might be suitable for examining the anti-viruses. With automatically functioned, the platform can get and have sample evaluated rapidly for further malware classification based on evaluation result in order to building well-quality malware question bank.
author2 Tseng Chun Yuan
author_facet Tseng Chun Yuan
CHU YEN HSI
朱彥曦
author CHU YEN HSI
朱彥曦
spellingShingle CHU YEN HSI
朱彥曦
Database of Malware: Collection, Analysis and Evaluation
author_sort CHU YEN HSI
title Database of Malware: Collection, Analysis and Evaluation
title_short Database of Malware: Collection, Analysis and Evaluation
title_full Database of Malware: Collection, Analysis and Evaluation
title_fullStr Database of Malware: Collection, Analysis and Evaluation
title_full_unstemmed Database of Malware: Collection, Analysis and Evaluation
title_sort database of malware: collection, analysis and evaluation
publishDate 2013
url http://ndltd.ncl.edu.tw/handle/58712803192871542798
work_keys_str_mv AT chuyenhsi databaseofmalwarecollectionanalysisandevaluation
AT zhūyànxī databaseofmalwarecollectionanalysisandevaluation
AT chuyenhsi èyìruǎntǐzīliàokùshōujífēnxīyǔpíngjiàn
AT zhūyànxī èyìruǎntǐzīliàokùshōujífēnxīyǔpíngjiàn
_version_ 1718074586595065856