Metody statické analýzy malware

Abstract

In this diploma thesis, the author focuses mainly on static analysis. Based on the submitted research of literature, which contains information about the analysis of malware and current trends in this area, as well as the possibilities of defending malware against such analysis, the author offers his own solution using static analysis. His solution is then further tested with set of samples of legitimate software and malware. The output is several parameters such as the code of the tool used, the library, strings, the entropy of the code or the occurrence of the Yara rules used. Based on these outputs, the author proves that the solution presented by him is functional.

Description

Subject(s)

static analysis, malware analysis, cyber defence, executable file formats, executable file protection

Citation