hh.sePublikasjoner
Endre søk
RefereraExporteraLink to record
Permanent link

Direct link
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annet format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annet språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Into the Gates of Troy: A Comparative Study of Antivirus Solutions for the Detection of Trojan Horse Malware.
Högskolan i Halmstad, Akademin för informationsteknologi.
2024 (engelsk)Independent thesis Advanced level (degree of Master (One Year)), 10 poäng / 15 hpOppgave
Abstract [en]

In the continuously evolving field of malware investigation, a Trojan horse, which appears as innocent software from the user's perspective, represents a significant threat and challenge for antivirus solutions because of their deceptive nature and the various malicious functionalities they provide. This study will compare the effectiveness of three free antiviruses for Linux systems (DrWeb, ClamAV, ESET NOD32) against a dataset of 1919 Trojan malware samples. The evaluation will assess their detection capabilities, resource usage, and the core functionalities they offer. The results revealed a trade-off between these three aspects: DrWeb achieved the highest detection rate (93.43%) but consumed the most resources and provided the most comprehensive functionalities. While ClamAV balanced detection and resource usage with less functionality, ESET NOD32 prioritised low resource usage but showcased a lower detection rate than the other engines (80.93%). Interestingly, the results showed that the category of Trojan horse malware and the file format analysed can affect the detection capabilities of the evaluated antiviruses. This suggests that there is no “silver bullet” for Linux systems against Trojans, and further research in this area is needed to assess the detection capabilities of antivirus engines thoroughly and propose advanced detection methods for robust protection against Trojans on Linux systems.

sted, utgiver, år, opplag, sider
2024. , s. 57
Emneord [en]
Malware analysis, Antivirus, Linux, Malware, Static analysis, Dynamic Analysis, Hybrid Analysis, Trojan horse
HSV kategori
Identifikatorer
URN: urn:nbn:se:hh:diva-53912OAI: oai:DiVA.org:hh-53912DiVA, id: diva2:1872390
Fag / kurs
Digital Forensics
Utdanningsprogram
Master's Programme in Network Forensics, 60 credits
Veileder
Examiner
Tilgjengelig fra: 2024-05-24 Laget: 2024-06-18 Sist oppdatert: 2025-10-01bibliografisk kontrollert

Open Access i DiVA

fulltext(925 kB)317 nedlastinger
Filinformasjon
Fil FULLTEXT02.pdfFilstørrelse 925 kBChecksum SHA-512
3240adbf982f34c34970e3ce96c51e7c8da8501db5efa4fd7c0ea3a81bd4765b4682d2fcc9ed5fc53e97ca80d533f9370d6c26609718a938b8f41de90f9a6015
Type fulltextMimetype application/pdf

Søk i DiVA

Av forfatter/redaktør
Hinne, Tom
Av organisasjonen

Søk utenfor DiVA

GoogleGoogle Scholar
Totalt: 319 nedlastinger
Antall nedlastinger er summen av alle nedlastinger av alle fulltekster. Det kan for eksempel være tidligere versjoner som er ikke lenger tilgjengelige

urn-nbn

Altmetric

urn-nbn
Totalt: 993 treff
RefereraExporteraLink to record
Permanent link

Direct link
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annet format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annet språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf