Advanced Polymorphic Techniques

نویسنده

  • Philippe Beaucamps
چکیده

Nowadays viruses use polymorphic techniques to mutate their code on each replication, thus evading detection by antiviruses. However detection by emulation can defeat simple polymorphism: thus metamorphic techniques are used which thoroughly change the viral code, even after decryption. We briefly detail this evolution of virus protection techniques against detection and then study the METAPHOR virus, today’s most advanced metamorphic virus. Keywords—Computer virus, Viral mutation, Polymorphism, Metamorphism, MetaPHOR, Virus history, Obfuscation, Viral genetic techniques.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Advanced Metamorphic Techniques in Computer Viruses

Nowadays viruses use polymorphic techniques to mutate their code on each replication, thus evading detection by antiviruses. However detection by emulation can defeat simple polymorphism: thus metamorphic techniques are used which thoroughly change the viral code, even after decryption. We briefly detail this evolution of virus protection techniques against detection and then study the METAPHOR...

متن کامل

Advanced Polymorphic Worms: Evading IDS by Blending in with Normal Traffic

Normal traffic can provide worms with a very good source of information to camouflage themselves. In this paper, we explore the concept of polymorphic worms that mutate based on normal traffic. We assume that a worm has already penetrated a system and is trying to hide its presence and propagation attempts from an IDS. We focus on stealthy worms that cannot be reliably detected by increases in ...

متن کامل

Using Polymorphic Types to Structure Flexible Protocol Stacks

A new approach to structuring layered protocols using polymorphic service access points and type inheritance between protocol machines is presented Polymorphic service access points facil itate the exible instantiation of protocol machines containing the minimal functionality required by an application The type inheritance structure is induced by a vertical partitioning of the upper layers of t...

متن کامل

Development of 44 Novel Polymorphic SSR Markers for Determination of Shiitake Mushroom (Lentinula edodes) Cultivars

The shiitake mushroom (Lentinulaedodes) is one of the most popular edible mushrooms in the world and has attracted attention for its value in medicinal and pharmacological uses. With recent advanced research and techniques, the agricultural cultivation of the shiitake mushroom has been greatly increased, especially in East Asia. Additionally, demand for the development of new cultivars with goo...

متن کامل

Smashing the Stack with Hydra: The Many Heads of Advanced Polymorphic Shellcode

Recent work on the analysis of polymorphic shellcode engines suggests that modern obfuscation methods would soon eliminate the usefulness of signature-based network intrusion detection methods [36] and supports growing views that the new generation of shellcode cannot be accurately and efficiently represented by the string signatures which current IDS and AV scanners rely upon. In this paper, w...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2007