Detecting unknown computer viruses - A new approach

被引:0
|
作者
Mori, A
机构
来源
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
We give an overview of the tools to detect computer viruses without relying on "pattern files" that contain "signatures" of previously captured viruses. The system combines static code analysis with code simulation to identify malicious behaviors commonly found in computer viruses such as mass mailing, file infection, and registry overwrite. These prohibited behaviors are defined separately as security policies at the level of API library function calls in a state-transition like manner. The current tools target at Win32 binary viruses on Intel IA32 architectures and early experiments show that they can detect most email viruses that had spread in the wild in recent years.
引用
收藏
页码:226 / 241
页数:16
相关论文
共 50 条
  • [1] A METHOD OF DETECTING AND ERADICATING KNOWN AND UNKNOWN VIRUSES
    MOSTOVOY, DY
    [J]. SECURITY AND CONTROL OF INFORMATION TECHNOLOGY IN SOCIETY, 1994, 43 : 109 - 111
  • [2] The Unknown Computer Viruses Detection Based on Similarity
    Liu, Zhongda
    Nakaya, Naoshi
    Koui, Yuuji
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2009, E92A (01) : 190 - 196
  • [3] Detecting unknown massive mailing viruses using proactive methods
    Hu, RQ
    Mok, AK
    [J]. RECENT ADVANCES IN INTRUSION DETECTION, PROCEEDINGS, 2004, 3224 : 82 - 101
  • [4] Detecting Sources of Computer Viruses in Networks: Theory and Experiment
    Shah, Devavrat
    Zaman, Tauhid
    [J]. SIGMETRICS 2010: PROCEEDINGS OF THE 2010 ACM SIGMETRICS INTERNATIONAL CONFERENCE ON MEASUREMENT AND MODELING OF COMPUTER SYSTEMS, 2010, 38 (01): : 203 - 214
  • [5] A graph mining approach for detecting unknown malwares
    Eskandari, Mojtaba
    Hashemi, Sattar
    [J]. JOURNAL OF VISUAL LANGUAGES AND COMPUTING, 2012, 23 (03): : 154 - 162
  • [6] Unknown moving target detecting and tracking based on computer vision
    Yang Shu-Ying
    Zhang Cheng
    Zhang We-Yu
    He Pi-Lian
    [J]. PROCEEDINGS OF THE FOURTH INTERNATIONAL CONFERENCE ON IMAGE AND GRAPHICS, 2007, : 490 - +
  • [7] A novel approach to detecting and measuring recombination: New insights into evolution in viruses, bacteria, and mitochondria
    Worobey, M
    [J]. MOLECULAR BIOLOGY AND EVOLUTION, 2001, 18 (08) : 1425 - 1434
  • [8] A new epidemic model of computer viruses
    Yang, Lu-Xing
    Yang, Xiaofan
    [J]. COMMUNICATIONS IN NONLINEAR SCIENCE AND NUMERICAL SIMULATION, 2014, 19 (06) : 1935 - 1944
  • [9] Unknown viruses
    Greek, R
    Greek, J
    [J]. NEW SCIENTIST, 1998, 159 (2150) : 55 - 55
  • [10] UNKNOWN VIRUSES
    GRAY, GW
    [J]. SCIENTIFIC AMERICAN, 1955, 192 (03) : 60 - &