期刊文献+

病毒特征检测中改进的多模式匹配算法 被引量:2

Improved multiple pattern matching algorithm in virus characteristic code detection
下载PDF
导出
摘要 针对病毒特征检测中码串长度对模式匹配算法性能影响的问题,结合基于码串长度的特征集自适应分类思路,提出了两种改进的多模式精确匹配算法,即NAC_BM和NWM_QS。改进算法通过引入文本窗口的前缀字符块WB增加了跳跃距离,减少了匹配次数,加快了匹配效率。初步实验证明,改进算法在执行时间和速率上优于原算法。 As to the influence of code length on pattern matching algorithms in feature-based virus detection,this paper proposed two modified precise multi-pattern matching algorithms,NAC_BM and NWM_QS,by combing the feature-based adaptive classification notion based on code length.The advanced algorithms increased the skip distance,decreased the matching number by introducing the prefix character piece of text window,thus improved the matching efficiency.The experimental results show that the novel algorithms are better than the original ones in execution time and speed.
出处 《计算机应用研究》 CSCD 北大核心 2012年第10期3828-3830,共3页 Application Research of Computers
基金 陕西省自然科学基础研究基金资助项目(2010JM8004)
关键词 病毒特征码匹配 多模式匹配算法 AC_BM WM_QS virus characteristic code matching multiple pattern matching algorithm AC_BM WM_QS
  • 相关文献

参考文献7

二级参考文献30

共引文献73

同被引文献20

  • 1张波云,殷建平,蒿敬波,张鼎兴.基于多重朴素贝叶斯算法的未知病毒检测[J].计算机工程,2006,32(10):18-21. 被引量:22
  • 2钮雪莲,凌力.Symbian系统平台安全性设计分析与改进[J].计算机工程,2006,32(11):194-196. 被引量:4
  • 3唐勇,卢锡城,胡华平,朱培栋.基于多序列联配的攻击特征自动提取技术研究[J].计算机学报,2006,29(9):1533-1541. 被引量:25
  • 4郝东白,郭林,黄皓.基于Hook的程序异常行为检测系统设计与实现[J].计算机工程与设计,2007,28(18):4373-4376. 被引量:9
  • 5PeisertS, Bishop M, Karin S, et al. Analysis of computer intrusionsusing sequences of function callsQ]. Dependable and Secure Computing,IEEE Transactions on, 2007, (4): 137—150.
  • 6MoskovitchR, Feher C, Elovici Y. Unknown malcode detection—Achronological evaluation[C]//Intelligence and Security Informatics, 2008.ISI 2008. IEEE International Conference on. IEEE, 2008: 267—268.
  • 7SathyanarayanV S, Kohli P, Bruhadeshwar B. Signature generationand detection of malware families[C]//Information Security and Privacy.Springer Berlin Heidelberg, 2008: 336—349.
  • 8JangM, Kim H, Yun Y. Detection of DLL inserted by Windowsmalicious code[C]//Convergence Information Technology, 2007.International Conference on. IEEE, 2007: 1059—1064.
  • 9Bayer U, Moser A, Kruegel C, et al. Dynamic analysis of maliciouscodeQ]. Journal in Computer Virology, 2006, ( 2 ) : 67—77.
  • 10NachenbergC S. Dynamic heuristic method for detecting computerviruses using decryption exploration and evaluation phases: U.S. Patent6,357,008[P]. 2002-3-12.

引证文献2

二级引证文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部