• Home
  • Search
  • Malware Dynamic Analysis Evasion Techniques
  • Cite Icon185
  • https://doi.org/10.1145/3365001Copy DOI Icon

Malware Dynamic Analysis Evasion Techniques

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

The cyber world is plagued with ever-evolving malware that readily infiltrate all defense mechanisms, operate viciously unbeknownst to the user, and surreptitiously exfiltrate sensitive data. Understanding the inner workings of such malware provides a leverage to effectively combat them. This understanding is pursued often through dynamic analysis which is conducted manually or automatically. Malware authors accordingly, have devised and advanced evasion techniques to thwart or evade these analyses. In this article, we present a comprehensive survey on malware dynamic analysis evasion techniques. In addition, we propose a detailed classification of these techniques and further demonstrate how their efficacy holds against different types of detection and analysis approaches. Our observations attest that evasive behavior is mostly concerned with detecting and evading sandboxes. The primary tactic of such malware we argue is fingerprinting followed by new trends for reverse Turing test tactic which aims at detecting human interaction. Furthermore, we will posit that the current defensive strategies, beginning with reactive methods to endeavors for more transparent analysis systems, are readily foiled by zero-day fingerprinting techniques or other evasion tactics such as stalling. Accordingly, we would recommend the pursuit of more generic defensive strategies with an emphasis on path exploration techniques that has the potential to thwart all the evasive tactics.

Similar Papers
  • Book Chapter

Malware Analysis With Machine Learning

  • Sep 26, 2023
  • Ravi Singh +1
  • Conference Article
  • Citations220

Rage against the virtual machine

  • Apr 13, 2014
  • Thanasis Petsas +4
  • Research Article
  • Citations28

Integrating Static and Dynamic Malware Analysis Using Machine Learning

  • Sep 01, 2015
  • IEEE Latin America Transactions
  • Reinaldo Jose Mangialardo +1
  • PDF
  • Research Article
  • Citations4

A hybrid machine learning approach for analysis of stegomalware

  • Apr 28, 2023
  • International Journal of Industrial Engineering and Operations Management
  • Prudence Kadebu +6
  • Research Article
  • Citations27

The other guys: automated analysis of marginalized malware

  • Feb 27, 2017
  • Journal of Computer Virology and Hacking Techniques
  • Marcus Felipe Botacin +2
  • Conference Article
  • Citations15

A Malware Evasion Technique for Auditing Android Anti-Malware Solutions

  • Oct 01, 2021
  • Virtual Community of Pathological Anatomy (University of Castilla La Mancha)
  • Samrah Mirza +6
  • Research Article

Analysis of Cognitive Schemas and Work-Related Stress Dynamics in Addictive Behaviors: Case Study

  • Sep 15, 2025
  • Addicta: The Turkish Journal on Addictions
  • Laila Essfioui
  • Conference Article

A machine learning approach for detecting and categorizing evasion sources in Android malware

  • Sep 01, 2021
  • Hasan Deeb +3
  • Book Chapter

Concluding Remarks

  • Aug 14, 2012
  • Heng Yin +1
  • Conference Article
  • Citations92

Efficient Dynamic Malware Analysis Based on Network Behavior Using Deep Learning

  • Dec 01, 2016
  • Toshiki Shibahara +4
  • Dissertation

Data flow and heap analysis with application to privilege escalation vulnerability scanning and software theft detection

  • Jan 01, 2013
  • Ping-Fai Chan
  • Research Article
  • Citations14

Evasion and Countermeasures Techniques to Detect Dynamic Binary Instrumentation Frameworks

  • Feb 08, 2022
  • Digital Threats: Research and Practice
  • Ailton Santos Filho +2
  • Research Article
  • Citations1

Detection of metamorphic malicious mobile code on android-based smartphones

  • Jan 01, 2017
  • International Journal of Advanced Media and Communication
  • Jeong Nyeo Kim +3
  • Research Article

Detection of metamorphic malicious mobile code on android-based smartphones

  • Jan 01, 2017
  • International Journal of Advanced Media and Communication
  • Sangdon Kim +3
  • Book Chapter
  • Citations2

SEMEO: A Semantic Equivalence Analysis Framework for Obfuscated Android Applications

  • Jan 01, 2022
  • Lecture notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering
  • Zhen Hu +5
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.