Title :
The design and implementation of a malicious code behavior detecting model based on virtualization techology
Author :
Ma, Wei ; Wang, Ming ; Zhu, Bo
Author_Institution :
Beijing Jiaotong Univ., Beijing, China
Abstract :
Among the existing malicious code detecting methods, the approach that based on code behavior is more practical. In this method, it judges if one code is malicious or not based on behavior the code generated. This way to arbitrate malicious code is more advanced and precise. The malicious code behavior detecting model based on virtualization technology ameliorated the existing technology, it separates code behaviors into virtual behaviors and actual behaviors, then reflected them into virtual circumstance and real circumstance, respectively. Accord to the result generated from the reflect process, the malicious code behavior detecting model could achieve higher precision and reliability.
Keywords :
computer viruses; software reliability; code behavior; malicious code detecting methods; virtualization technology; Analytical models; Computers; Detection algorithms; Reliability; Security; Virtual environment; Virtual machining; Behaviors; Detecting; Malicious code; Virtualization;
Conference_Titel :
Machine Learning and Cybernetics (ICMLC), 2010 International Conference on
Conference_Location :
Qingdao
Print_ISBN :
978-1-4244-6526-2
DOI :
10.1109/ICMLC.2010.5580772