VIRTUAL ENVIRONMENT DETECTION PREVENTION SYSTEM ON VIRTUALBOXRUNNING WINDOWS OPERATING SYSTEM FROM MALICIOUS SOFTWAREBY MODIFYING REGISTRY AND MAC ADDRESS
As malicious software attacks on Windows operating system rise, the urge to prevent and handle are also rising. The effort gets harder and more complex to solve the problem. In order to be able to tackle the malware attacks, malware analysis needed to understand the malware’s core actions and beh...
Saved in:
Main Author: | |
---|---|
Format: | Final Project |
Language: | Indonesia |
Online Access: | https://digilib.itb.ac.id/gdl/view/56690 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Institution: | Institut Teknologi Bandung |
Language: | Indonesia |
Summary: | As malicious software attacks on Windows operating system rise, the urge to
prevent and handle are also rising. The effort gets harder and more complex to
solve the problem. In order to be able to tackle the malware attacks, malware
analysis needed to understand the malware’s core actions and behaviours.
Malware analysis usually executed at virtual environment. The problem is today
malwares are able to distinguish the environment that the malwares are on. This
research aims to prevent virtual environment detection from malware by modifying
certain configuration: registry, MAC Address, filesystem, and processes. The
research shows that the prevention has been able to hide the virtual environment
characteristics on VirtualBox. The solution brings possibility for malware analyst
to do the malware analysis on VirtualBox safely. |
---|