Detecting unknown computer viruses - A new approach

被引:0
|
作者
Mori, A
机构
来源
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
We give an overview of the tools to detect computer viruses without relying on "pattern files" that contain "signatures" of previously captured viruses. The system combines static code analysis with code simulation to identify malicious behaviors commonly found in computer viruses such as mass mailing, file infection, and registry overwrite. These prohibited behaviors are defined separately as security policies at the level of API library function calls in a state-transition like manner. The current tools target at Win32 binary viruses on Intel IA32 architectures and early experiments show that they can detect most email viruses that had spread in the wild in recent years.
引用
收藏
页码:226 / 241
页数:16
相关论文
共 50 条
  • [31] COMPUTER VIRUSES
    DENNING, PJ
    [J]. AMERICAN SCIENTIST, 1988, 76 (03) : 236 - 238
  • [32] COMPUTER VIRUSES
    HARKIN, PJR
    [J]. BRITISH MEDICAL JOURNAL, 1988, 297 (6649): : 688 - 688
  • [33] Lichens—a new source or yet unknown host of herbaceous plant viruses?
    Karel Petrzik
    Jan Vondrák
    Miloš Barták
    Ondřej Peksa
    Olga Kubešová
    [J]. European Journal of Plant Pathology, 2014, 138 : 549 - 559
  • [34] COMPUTER VIRUSES
    SIEGEL, M
    [J]. JOURNAL OF THE AMERICAN DENTAL ASSOCIATION, 1992, 123 (11): : 10 - &
  • [35] COMPUTER VIRUSES
    不详
    [J]. AMERICAN JOURNAL OF ORTHODONTICS AND DENTOFACIAL ORTHOPEDICS, 1993, 104 (01) : 96 - 97
  • [36] COMPUTER VIRUSES
    CREMONESI, C
    MARTELLA, G
    [J]. ELETTROTECNICA, 1991, 78 (01): : 21 - 31
  • [37] COMPUTER VIRUSES
    不详
    [J]. COMPUTERS & SECURITY, 1995, 14 (04) : 280 - 280
  • [38] Computer viruses
    Busby, B
    [J]. HEALTH PHYSICS, 1997, 72 (04): : 511 - 512
  • [39] COMPUTER VIRUSES
    ASBURY, J
    [J]. BRITISH MEDICAL JOURNAL, 1988, 297 (6643): : 246 - 247
  • [40] COMPUTER VIRUSES
    CROALL, J
    MCKAY, IC
    [J]. BRITISH MEDICAL JOURNAL, 1988, 297 (6654): : 981 - 982