Faisal A. Garba, Kabiru I. Kunya, S. A. Ibrahim, A. B. Isa, Khadija M. Muhammad, Nasiru N. Wali
{"title":"Evaluating the State of the Art Antivirus Evasion Tools on Windows and Android Platform","authors":"Faisal A. Garba, Kabiru I. Kunya, S. A. Ibrahim, A. B. Isa, Khadija M. Muhammad, Nasiru N. Wali","doi":"10.1109/NigeriaComputConf45974.2019.8949637","DOIUrl":null,"url":null,"abstract":"Hackers use malware to gain access to target computers. Malicious payloads are usually generated using tools such as Metasploit. As a means of defense, the target computers deploy anti-virus solution to detect this malicious payloads and protect the victim machines. In a reaction to this, the hackers created anti-virus evasion tools to evade detection by this antivirus solutions. But how effective are these antivirus evasion tools? This paper seeks to evaluate the effectiveness of some selected anti-virus evasion tools: Avet, Veil 3.0, The Fat Rat, PeCloak.py, Phantom-Evasion, Shellter, Unicorn and Hercules against current best Antivirus Solutions on Windows and Android platforms.","PeriodicalId":228657,"journal":{"name":"2019 2nd International Conference of the IEEE Nigeria Computer Chapter (NigeriaComputConf)","volume":"19 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 2nd International Conference of the IEEE Nigeria Computer Chapter (NigeriaComputConf)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/NigeriaComputConf45974.2019.8949637","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6
Abstract
Hackers use malware to gain access to target computers. Malicious payloads are usually generated using tools such as Metasploit. As a means of defense, the target computers deploy anti-virus solution to detect this malicious payloads and protect the victim machines. In a reaction to this, the hackers created anti-virus evasion tools to evade detection by this antivirus solutions. But how effective are these antivirus evasion tools? This paper seeks to evaluate the effectiveness of some selected anti-virus evasion tools: Avet, Veil 3.0, The Fat Rat, PeCloak.py, Phantom-Evasion, Shellter, Unicorn and Hercules against current best Antivirus Solutions on Windows and Android platforms.
黑客利用恶意软件进入目标电脑。恶意载荷通常是使用Metasploit等工具生成的。作为一种防御手段,目标计算机部署防病毒解决方案来检测这种恶意载荷并保护受害计算机。作为回应,黑客创造了反病毒规避工具来逃避该反病毒解决方案的检测。但是这些防病毒规避工具有多有效呢?本文旨在评估一些选定的反病毒逃避工具的有效性:Avet, Veil 3.0, the Fat Rat, PeCloak.py, Phantom-Evasion, Shellter, Unicorn和Hercules对抗当前Windows和Android平台上最好的反病毒解决方案。