本文已被:浏览 1815次 下载 2621次
Received:June 08, 2015 Revised:July 30, 2015
Received:June 08, 2015 Revised:July 30, 2015
中文摘要: 传统的杀毒软件基于特征码识别的方式有效但具有一定的局限性.使用沙箱动态分析的方法能通过目标软件的行为特征对其恶意属性进行判断,可以同时达到检测恶意软件和帮助分析人员快速分析恶意软件的目的.为了提高沙箱平台分析的易用性和高效性,本文设计并实现了一个恶意软件动态分析云平台,通过分布式的沙箱控制机制,保证沙箱的分析能力以及可扩展性,并可通过对目标软件的分析结果来判断其是否属于恶意软件.实验表明,设计的云沙箱系统能够有效和高效的检测出恶意软件的恶意行为.
Abstract:Although traditional anti-virus software is fast, feature code based detection mode will be a restriction. Dynamic analysis based on sandbox is better at finding malware via software behavior. It can not only find malware for client but also help malware analyzer working faster. In purpose of increasing usability and efficiency of analysis based on sandbox, a malware dynamic analysis cloud is designed and implemented. Through distributed control mechanism, we can ensure the system's capability and flexibility. A malicious software can be distinguished based on the result of the analysis. Experiments show the system can effectively detect malware behavior with high efficiency.
keywords: malware dynamic analysis sandbox cloud
文章编号: 中图分类号: 文献标志码:
基金项目:
引用文本:
徐欣,程绍银,蒋凡.恶意软件动态分析云平台.计算机系统应用,2016,25(3):8-13
XU Xin,CHENG Shao-Yin,JIANG Fan.Malware Dynamic Analysis Cloud.COMPUTER SYSTEMS APPLICATIONS,2016,25(3):8-13
徐欣,程绍银,蒋凡.恶意软件动态分析云平台.计算机系统应用,2016,25(3):8-13
XU Xin,CHENG Shao-Yin,JIANG Fan.Malware Dynamic Analysis Cloud.COMPUTER SYSTEMS APPLICATIONS,2016,25(3):8-13