Artigo Acesso aberto

Design and Development of a Command-line Tool for Portable Executable File Analysis and Malware Detection in IoT Devices

2015; Science and Engineering Research Support Society; Volume: 9; Issue: 8 Linguagem: Inglês

10.14257/ijsia.2015.9.8.10

ISSN

2207-9629

Autores

June Ho Yang, Yeonseung Ryu,

Tópico(s)

Digital and Cyber Forensics

Resumo

Recently, Microsoft unveiled a new operating system called Windows 10.As it is highly expected that Windows 10 will play a significant role in the Internet of Things era, the Portable Executable (PE) format is drawing attention even more widely than before.PE is a standard file format for executables and object code used in MS Windows operating systems.Since a number of various malwares have widely spread by exploiting vulnerabilities of PE structure, the need of automatic tools for PE-malware detection is being magnified.In this paper, we designed and developed a command-line PE file analysis tool using Python language for automatic detection of Windows malware.

Referência(s)