%0 Journal Article
%T Differential analysis on dynamic binary and its application in malicious code analysis
动态指令流差分分析在恶意软件分析中的应用*
%A SUN Ming
%A GU Da-wu
%A LI Juan-ru
%A LUO Yu-hao
%A
孙明
%A 谷大武
%A 李卷孺
%A 罗宇皓
%J 计算机应用研究
%D 2012
%I
%X Static binary analysis methods cannot meet the demand for malicious code analysis, and the traditional dynamic analysis approaches cannot effectively find the critical information among the huge amount of dynamic binary code. This paper gave a kind of differential analysis approach on dynamic binary code and provided its model and method. This approach could effectively extract the sensitive information from malicious code and make the function module or data spread understood. Finally, it provided an experiment based on differential binary analysis system, which validated the capability and efficiency of the approach.
%K malware analysis
%K dynamic code
%K differential analysis
%K dataflow analysis
恶意软件分析
%K 动态指令流
%K 差分分析
%K 数据流
%U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=A9D9BE08CDC44144BE8B5685705D3AED&aid=B42EDD6608FE925A1530DAF836A896F6&yid=99E9153A83D4CB11&vid=771469D9D58C34FF&iid=0B39A22176CE99FB&sid=4E8E6A5CE04FD382&eid=36C49E1242CC2C7A&journal_id=1001-3695&journal_name=计算机应用研究&referenced_num=0&reference_num=12