Back to Search Start Over

Object-semantics based malware detection method.

Authors :
REN Li
PAN Xiao-zhong
Source :
Application Research of Computers / Jisuanji Yingyong Yanjiu. Oct2013, Vol. 30 Issue 10, p3106-3113. 5p.
Publication Year :
2013

Abstract

Malware variants make a big threat to security of information system. To detect variants of malicious codes effectively, through dynamic monitoring and parsing system calls and parameters, this paper related different object operations to the same object, and constructed the object state changing graph. Then it processed the object state changing graph by an anti-obfuscation method to acquire the anti-interference behavior signatures graph of malware. Finally, it detected unknown codes based on the behavior signatures graph. As the results of the experiments show, the method can effectively resist the inference like the rearrangement of malicious codes and the inserting of useless system call. It has a low false negative rate in detecting normal programs and has a good result in detecting variants of malicious codes. [ABSTRACT FROM AUTHOR]

Details

Language :
Chinese
ISSN :
10013695
Volume :
30
Issue :
10
Database :
Academic Search Index
Journal :
Application Research of Computers / Jisuanji Yingyong Yanjiu
Publication Type :
Academic Journal
Accession number :
95443907
Full Text :
https://doi.org/10.3969/j.issn.1001-3695.2013.10.055