Skripsi
PERBANDINGAN ANALISIS STATIS DAN DINAMIS PADA DETEKSI WANNACRY RANSOMWARE
Ransomware is a type of malware that encrypts the victim's data and demands a ransom to restore access, with WannaCry being one of the most notorious variants exploiting EternalBlue on the SMB protocol. This study compares static and dynamic analysis methods in detecting WannaCry ransomware to evaluate their effectiveness. Static analysis is performed without executing the ransomware, using tools such as Exeinfo PE, HxD Editor, and PeStudio to identify its internal structure. On the other hand, dynamic analysis involves executing the ransomware in an isolated environment using tools like Process Monitor, Wireshark, and RegShot to observe its runtime behavior. The study results show that both methods achieve a 100% detection rate, each with its strengths: static analysis excels in initial detection speed and safety, while dynamic analysis provides a deeper understanding of the ransomware's behavior. The combination of these methods offers a more comprehensive approach to detecting and understanding WannaCry ransomware, which is expected to serve as a foundation for developing more effective detection methods in the future.
Inventory Code | Barcode | Call Number | Location | Status |
---|---|---|---|---|
2507000356 | T165177 | T1651772025 | Central Library (Reference) | Available but not for loan - Not for Loan |
No other version available