Item type |
学術雑誌論文 / Journal Article(1) |
公開日 |
2009-12-04 |
タイトル |
|
|
タイトル |
An Automatic Unpacking Method for Computer Virus Effective in the Virus Filter Based on Paul Graham's Bayesian Theorem |
キーワード |
|
|
主題Scheme |
Other |
|
主題 |
virus |
キーワード |
|
|
主題Scheme |
Other |
|
主題 |
obfuscate |
キーワード |
|
|
主題Scheme |
Other |
|
主題 |
compression |
キーワード |
|
|
主題Scheme |
Other |
|
主題 |
unpacking |
キーワード |
|
|
主題Scheme |
Other |
|
主題 |
Bayesian virus filter |
資源タイプ |
|
|
資源タイプ識別子 |
http://purl.org/coar/resource_type/c_6501 |
|
資源タイプ |
journal article |
著者 |
ZHANG, Dengfeng
NAKAYA, Naoshi
KOUI, Yuuji
YOSHIDA, Hitoaki
|
著者(機関) |
|
|
値 |
Engineering Graduate Course, Iwate University |
著者(機関) |
|
|
値 |
Engineering Graduate Course, Iwate University |
著者(機関) |
|
|
値 |
Engineering Graduate Course, Iwate University |
著者(機関) |
|
|
値 |
Super Computing and Information Sciences Center, Iwate University |
登録日 |
|
|
日付 |
2009-12-04 |
書誌情報 |
IEICE Transactions on Communications
巻 E92-B,
号 4,
p. 1119-1127,
発行日 2009-01-01
|
ISSN |
|
|
収録物識別子タイプ |
ISSN |
|
収録物識別子 |
0916-8516 |
Abstract |
|
|
内容記述タイプ |
Other |
|
内容記述 |
Recently, the appearance frequency of computer virus variants has increased. Updates to virus information using the normal pattern matching method are increasingly unable to keep up with the speed at which viruses occur, since it takes time to extract the characteristic patterns for each virus. Therefore, a rapid, automatic virus detection algorithm using static code analysis is necessary. However, recent computer viruses are almost always compressed and obfuscated. It is difficult to determine the characteristics of the binary code from the obfuscated computer viruses. Therefore, this paper proposes a method that unpacks compressed computer viruses automatically independent of the compression format. The proposed method unpacks the common compression formats accurately 80% of the time, while unknown compression formats can also be unpacked. The proposed method is effective against unknown viruses by combining it with the existing known virus detection system like Paul Graham's Bayesian Virus Filter etc. |
出版者 |
|
|
出版者 |
The Institute of Electronics, Information and Communication Engineers |
権利 |
|
|
権利情報 |
社団法人 電子情報通信学会 |
権利URI |
|
|
権利情報 |
Copyright (c) 2009 (社)電子情報通信学会 |
DOI |
|
|
関連タイプ |
isIdenticalTo |
|
|
識別子タイプ |
DOI |
|
|
関連識別子 |
10.1587/transcom.E92.B.1119 |
著者版フラグ |
|
|
出版タイプ |
VoR |
|
出版タイプResource |
http://purl.org/coar/version/c_970fb48d4fbd8a85 |