Dynamic Analysis System for Detecting Remote Server-Side Polymorphic Malicious Mobile Apps on Android based Smartphone

As Android malware is evolving quickly, malware creators are starting to develop new kinds of threats such as remote server-side polymorphic malicious code for Android platform that are being actively generated and distributed via the official Android Markets. Remote server-side polymorphic mobile apps can’t be detected correctly as those apps contain spyware and trojans as a hidden undetectable code. Furthermore, these types of malicious apps download other malware onto infected phones using advanced deformation and transformation tricks based on an existing exploit. Therefore, we designed and implemented dynamic analysis system to detect evasive and transformative remote SSP malicious mobile apps efficiently. In particular, we proposed web based analysis and management system to validate and confirm suspicious remote server-side polymorphic malicious apps efficiently.