首页 | 本学科首页   官方微博 | 高级检索  
     

基于免疫原理的恶意软件检测模型*
引用本文:张福勇,齐德昱,胡镜林.基于免疫原理的恶意软件检测模型*[J].计算机应用研究,2010,27(6):2313-2315.
作者姓名:张福勇  齐德昱  胡镜林
作者单位:华南理工大学,计算机系统研究所,广州,510640
基金项目:国家技术创新基金资助项目(08C26214411198);粤港关键领域重点突破项目(2008A011400010);广州市创新基金资助项目(2007V41C0301)
摘    要:针对恶意软件检测尤其是未知恶意软件检测的不足,提出一种基于免疫原理的恶意软件检测模型,该模型采用程序运行时产生的IRP请求序列作为抗原,定义系统中的正常程序为自体,恶意程序为非自体,通过选定数量的抗体,采用人工免疫原理对非自体进行识别。实验结果表明,此模型在恶意软件的检测方面具有较高的准确率,且误报和漏报率较低,是一种有效的恶意软件检测方法。

关 键 词:人工免疫    恶意软件    病毒检测    反病毒

Immune-based model for malware detection
ZHANG Fu-yong,QI De-yu,HU Jing-lin.Immune-based model for malware detection[J].Application Research of Computers,2010,27(6):2313-2315.
Authors:ZHANG Fu-yong  QI De-yu  HU Jing-lin
Affiliation:(Research Institute of Computer Systems, South China University of Technology, Guangzhou 510640, China)
Abstract:In order to solve the problems existing in the current malware detection especially unknown malware detection, this paper proposed a new malware detection model based on immune. In this model, the IRP request sequences created by running programs regarded as antigen, and the normal programs in operating system were self, malwares were nonself. The nonself would be detected by some antibodies using artificial immunology. Experimental results reveal that this model has high true positive rate, and low false p...
Keywords:artificial immune  malware  virus detection  anti-virus
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《计算机应用研究》浏览原始摘要信息
点击此处可从《计算机应用研究》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号