Memory forensics is used to implement and investigate malware that is executed or stored in RAM. Whether it is static malware analysis or dynamic malware analysis,each time the malware investigator retrieves the result, it is displayed in plaintext, and the investigator begins examining each result in the plaintext and triaging the malicious request. It's a labor-intensive process, and occasionally an investigator will upload malicious files to his or her computer to be analyzed for malware. These malicious files could contain worms or have the potential to infect the investigator's computer; if that happens, the attacker will keep an eye on all future investigations and the evidence they produce. With the help of this research and algorithm, whenever a malicious DLL or request is made, the algorithm will be able to identify it and flag it. This will save the investigator a lot of time because the investigator can upload files to his or her computer without worrying about whether they will be flagged as malicious behavior. We experimented wih multiple malicious files and our algorithm shows 98% efficacy.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.
customersupport@researchsolutions.com
10624 S. Eastern Ave., Ste. A-614
Henderson, NV 89052, USA
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
Copyright © 2024 scite LLC. All rights reserved.
Made with 💙 for researchers
Part of the Research Solutions Family.