A study of android malware detection techniques in virtual environment
详细信息    查看全文
文摘
With the rapid development of mobile environment, cyber-attacks have become more commonplace and more sophisticated. In smartphone operating system market, in particular, Android platform accounts for a large portion (65 % or higher). At the same time, malwares on the Android platform, has increased exponentially. This, such as mobile Internet service provider (ISP) operator and device manufacturers, have applied an anti-virus product. However, there exhibit a high false-positive rate to detect malwares because these are based on patterns or heuristic. To solve this problem, this study proposed and implemented Android malware detection techniques in virtual environment, using single physical machine. The proposed system is divided into a host system and virtual environment. The former features black market crawler designed to collect malware, hypervisor targeted for the communication and control of virtual machine and host machine and main module which transmits analysis file and result log to each system. In virtual environment, agent and emulator were implemented to analyze malware-suspicious application. This study implemented more active and faster Android malware detection techniques through black market crawling and Linux kernel-hooking mechanism.

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700