首页 | 本学科首页   官方微博 | 高级检索  
     


Detection technology of malicious code based on semantic
Authors:Qingmei Lu  Yulin Wang
Affiliation:1.International School of Software,Wuhan University,Wu Han,China;2.School of Science and Control Engineering,North University of China,Taiyuan,China;3.Department of Bioengieering,University of Louisville,Louisville,United States
Abstract:This paper puts forward one kind of behavioral characteristic extraction and detection method of malicious code based on semantic; it extracts the key behavior and dependence relations among behaviors by combining with stain spread analysis in command layer and semantic analysis in behavior layer. And then it uses anti-confusion engine identification semantic irrelevance and semantic equivalence behavior to obtain malicious code behavior characteristic with certain capacity of resisting disturbance, as well as realize characteristic extraction and detection on prototype system. It completes experimental demonstration on this system through analysis and detection on plenty of malicious code samples. The test result indicates that extraction characteristic based on the above methods has characteristic such as stronger capacity of resisting disturbance etc., detection based on this characteristic has better identification ability for malicious code.
Keywords:
本文献已被 SpringerLink 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号