返回
Exploiting an antivirus interface
DOI:10.1016/j.csi.2009.04.004.png)
摘要
En 中文
We propose a technique for defeating signature-based malware detectors by exploiting information disclosed by antivirus interfaces. This information is leveraged to reverse engineer relevant details of the detector's underlying signature database, revealing binary obfuscations that suffice to conceal malware from the detector. Experiments with real malware and antivirus interfaces on Windows operating systems justify the effectiveness of our approach. (C) 2009 Elsevier B.V. All rights reserved.
Keyword:
Security
Signature-based malware detection
Data mining
Binary obfuscation
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
C
IF:
3.1
论文数:
2.3K
被引数:
2.0K

