摘要
通过对基于不同语义特征的恶意代码检测技术进行梳理归纳,厘清不同语义特征在恶意代码检测过程中的作用,为恶意代码检测技术路线、判定算法的选择奠定了基础。
Malware is one of the major threats to network security. The signature detection technolo- gy based on syntactic teatures could hardly adapt to the rapid evolution of malware. The detection technology based on semantic teatures has become the mainstream of malware analysis. According to the ditterent objects, the semantic teatures include assembly instruction, flow graph, system call, and comprehensive teatures. Among them, different objects can be organized in different ways. Through the analysis of malware detection technology based on different semantic teatures, it can clarify the role of ditterent semantic teatures in malware detection, and lay a good toundation for the selection of malware detection technology route and detection model.
作者
戴超
庞建民
张一弛
孙笛
岳峰
DAI Chao, PANG Jianmin, ZHANG Yichi, SUN Di, YUE Feng(Information Engineering University, Zhengzhou 450001 , China)
出处
《信息工程大学学报》
2018年第1期106-113,共8页
Journal of Information Engineering University
基金
国家自然科学基金资助项目(61472447)
关键词
恶意软件
语义特征
汇编指令
流图
系统调用
malware
semantic teatures
disassembly instructions
flow graph
system call