Poster: Automatic profiling of evasive mixed-mode malware with SEMU. Aboughadareh, S., Csallner, C., & Azarmi, M. In 33rd IEEE Symposium on Security and Privacy (Oakland), Poster session, May, 2013.
bibtex   
@inproceedings{aboughadareh13poster,
  author = {Shabnam Aboughadareh and Christoph Csallner and Mehdi Azarmi},
  title = {Poster: Automatic profiling of evasive mixed-mode malware with {SEMU}},
  booktitle = {33rd IEEE Symposium on Security and Privacy (Oakland), Poster session},
  year = 2013,
  month = may,
  category = {Security},
	summary = {We describe a combination of user- and kernel-mode malware 
		that can subvert state-of-the-art dynamic malware analysis techniques,
		such as those built on the popular TEMU and Ether analysis frameworks.
		We present an alternative malware analysis framework, SEMU, which cannot
		be subverted by such attacks as it performs whole-system analysis
		outside the analyzed (guest) OS.},
}

Downloads: 0