• Home
  • Search
  • Malware Instrumentation Application to Regin Analysis
  • Cite Icon3
  • https://doi.org/10.18464/cybin.v1i1.2Copy DOI Icon

Malware Instrumentation Application to Regin Analysis

Show More
  • Abstract
  • Literature Map
  • Citations
  • Similar Papers
Abstract

The complexity of the Regin malware underlines the importance of reverse engineering in modern incident response. The present study shows that such complexity can be overcome: substantial information about adversary tactics, techniques and procedures is obtained from reverse engineering. An introduction to the Regin development framework is provided along with instrumentation guidelines. Such instrumentation enables experimentation with malware modules. So analysis can derectly leverage malware’s own code without the need to program an analysis toolkit. As an application of the presented instrumentation, the underlying botnet architecture is analysed. Finally conclusions from different perspectives are provided: defense, attack and counter intelligence.

Similar Papers
  • Research Article
  • Citations2

Fast-flux Botnet Detection Method Based on Spatiotemporal Feature of Network Traffic

  • Aug 18, 2020
  • 电子与信息学报
  • Weina Niu +5
  • Research Article

DGA Clustering and Analysis: Mastering Modern, Evolving Threats, DGALab

  • May 12, 2016
  • SHILAP Revista de lepidopterología
  • Alexander Chailytko +1
  • Research Article

Algorithms for sequence-based reverse metabolic engineering

  • Dec 18, 2013
  • Research Repository (Delft University of Technology)
  • Jurgen F Nijkamp
  • Supplementary Content

Cryptographic Primitives that Resist Backdooring and Subversion

  • Apr 04, 2021
  • TUbilio (Technical University of Darmstadt)
  • Sogol Mazaheri
  • Research Article
  • Citations7

Complex system contextual framework (cscf): a grounded-theory construction for the articulation of system context in addressing complex systems problems

  • Mar 14, 2019
  • ODU Digital Commons (Old Dominion University)
  • W B Max Crownover +1
  • Conference Article
  • Citations9

Defining requirements at different levels of abstraction

  • Sep 06, 2004
  • Stan Bühne +5
  • Research Article
  • Citations11

Metric-based Evaluation of Implemented Software Architectures

  • Jun 28, 2013
  • Research Repository (Delft University of Technology)
  • Eric Bouwers
  • Research Article

Künye 2 (1)

  • Jan 09, 2012
  • Mühendislik Bilimleri ve Tasarım Dergisi
  • Sdü Mühendislik Bilimleri Ve Tasarım Dergisi
  • Dissertation

Automated Extraction of Network Activity From Memory Resident Code

  • Mar 09, 2020
  • Austin Sellers
  • Research Article
  • Citations5

PayPal, FBI and others wage war on Botnet armies. Can they succeed?

  • May 01, 2008
  • Computer Fraud & Security
  • Philip Hunter
  • Research Article
  • Citations11

Masquerade attacks against security software exclusion lists

  • Mar 03, 2021
  • Figshare
  • Timothy R Mcintosh +3
  • Conference Article
  • Citations2

Design for manufacturing of an ergonomic joystick handgrip

  • Jan 01, 2004
  • Elena Bassoli +3
  • Research Article

The Design and Implementation of MCFlow: a Real-time Multi-core Aware Middleware for Dependent Task Graphs

  • Nov 04, 2014
  • Open Scholarship Institutional Repository (Washington University in St. Louis)
  • Huang-Ming Huang +2
  • Research Article
  • Citations2

Mobile application tamper detection scheme using dynamic code injection against repackaging attacks

  • Jun 02, 2016
  • The Journal of Supercomputing
  • Haehyun Cho +3
  • Conference Article
  • Citations7

Analysis of Obfuscated Code with Program Slicing

  • Jun 01, 2019
  • Mahin Talukder +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.