欢迎来到天天文库
浏览记录
ID:36440585
大小:5.59 MB
页数:56页
时间:2019-05-10
《基于行为的病毒检测系统的设计与实现》由会员上传分享,免费在线阅读,更多相关内容在学术论文-天天文库。
1、北京交通大学硕士学位论文基于行为的病毒检测系统的设计与实现姓名:李江涛申请学位级别:硕士专业:信息安全指导教师:韩臻20080601ABSTRACTABSTRACT:Wimtherapiddevelopmentofcomputertechnology,peoplearesufferingallkindsofsecurityproblemswhileenteringtheinformationstage:networkisinvadedillegally;importantinformationis
2、alwaysstolenorsystemcrashed.Howtopreventanddetectvirusesisalong-termresearchanddevelopedissueinthefieldofinformationsecurity.Asthedevelopmentofnetworkandtheimprovementoflevelofviruscode,thetraditionalvirusdetectiontechnologies’shortcomingismoreobvious
3、ly,anditisdifficulttomeetthepeople+Sneedsforinformationsecurity.Behavior-basedvirusdetectiontechnologyusestheuniquecharacteristicsofthevirustodetectcomputervirus;itcandetectunknownvimsessuccessfully.111isvirusdetectiontechnologyCanadapttothenewfeature
4、sofcomputerviruswell.Undoubtedlyithasatremendoussuperiorityandbroaddevelopmentprospects,andwillstandforthedevelopmenttrendofvirusdetectiontechnologyforquitealongtime.Weanalyzedthebehaviorcharacteristicsofallkindsofvirusesandimplementedavirusdetections
5、ysteminthispaper.Thesystemisdividedintofourfunctionalmodules:filesystemmonitoringmodule,behaviordetectionmodule,behavioranalysismoduleandsystemrecoverymodule.Wefirstanalyzedthebehaviorcharacteristicsofallkindsofviruses,andconstructedthelibraryofvirusb
6、ehaviorcharacteristics.Accordingtothecharacterthatmaliciousbehaviorsaremainlyconcentratedindestroyingtheexecutablefilesorsystemfilesofsomespecifictype,aswellastherelevantregistrykeys,weimplementedthesystembasedonfilefilterdriver,corporationwithapplica
7、tion.Thedrivermainlyconstructsthevirtualsystemandmonitorsthefilesystem;theapplicationcompletesregistrytesting;extractingandanalyzingbehaviorsofviruses;systemrecovery.Finallywetestedthesystem’Sperformanceusingnumbersofvirussamples.KEYWORDS:ViresDetecti
8、on;BehaviorCharacterization;VirtualTechnology;FileFilterDriverCI。ASSN0:TP309学位论文版权使用授权书本学位论文作者完全了解北京交通大学有关保留、使用学位论文的规定。特授权北京交通大学可以将学位论文的全部或部分内容编入有关数据库进行检索,并采用影印、缩印或扫描等复制手段保存、汇编以供查阅和借阅。同意学校向国家有关部门或机构送交论文的复印件和磁盘。(保密的学位论文在解密后适用本授权说明)学位论文作者签名:鹰砬诤签
此文档下载收益归作者所有