In this paper, we analyze several metamorphic virus generators. We define a similarity index and use it to precisely quantify the degree of metamorphism that each generator produces. Then we present a detector based on hidden Markov models and we consider a simpler detection method based on our similarity index. Both of these techniques detect all of the metamorphic viruses in our test set with extremely high accuracy. In addition, we show that popular commercial virus scanners do not detect the highly metamorphic virus variants in our test set. © Springer-Verlag France 2006.
CITATION STYLE
Wong, W., & Stamp, M. (2006). Hunting for metamorphic engines. Journal in Computer Virology, 2(3), 211–229. https://doi.org/10.1007/s11416-006-0028-7
Mendeley helps you to discover research relevant for your work.