VIRTUAL ENVIRONMENT DETECTION PREVENTION SYSTEM ON VIRTUALBOXRUNNING WINDOWS OPERATING SYSTEM FROM MALICIOUS SOFTWAREBY MODIFYING REGISTRY AND MAC ADDRESS

As malicious software attacks on Windows operating system rise, the urge to prevent and handle are also rising. The effort gets harder and more complex to solve the problem. In order to be able to tackle the malware attacks, malware analysis needed to understand the malware’s core actions and beh...

Full description

Saved in:
Bibliographic Details
Main Author: David Arel B, Marcellinus
Format: Final Project
Language:Indonesia
Online Access:https://digilib.itb.ac.id/gdl/view/56690
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Institut Teknologi Bandung
Language: Indonesia
Description
Summary:As malicious software attacks on Windows operating system rise, the urge to prevent and handle are also rising. The effort gets harder and more complex to solve the problem. In order to be able to tackle the malware attacks, malware analysis needed to understand the malware’s core actions and behaviours. Malware analysis usually executed at virtual environment. The problem is today malwares are able to distinguish the environment that the malwares are on. This research aims to prevent virtual environment detection from malware by modifying certain configuration: registry, MAC Address, filesystem, and processes. The research shows that the prevention has been able to hide the virtual environment characteristics on VirtualBox. The solution brings possibility for malware analyst to do the malware analysis on VirtualBox safely.