首页> 外国专利> DEVICE FOR AUTOMATICALLY IDENTIFYING ANTI-ANALYSIS TECHNIQUES BY USING SIGNATURE EXTRACTION AND METHOD THEREFOR

DEVICE FOR AUTOMATICALLY IDENTIFYING ANTI-ANALYSIS TECHNIQUES BY USING SIGNATURE EXTRACTION AND METHOD THEREFOR

机译:通过使用签名提取和方法自动识别抗分析技术的装置

摘要

A device for automatically identifying anti-analysis techniques by using the signature extraction, includes an extraction unit which extracts a DEX file and an ELF file from an application file after unpacking the application file, which is in an APK format and includes compressed execution code to be executed on Android, a detection unit which receives the acquired signature classified according to types of the signature, analytically compares the input signature with the signature stored in a database, and detects the signature used in anti-analysis techniques, and a determination unit which determines according to the detected signature what anti-analysis technique is applied to the application. According to the present invention, it is possible to enable an appropriate and quick response to damages due to malicious applications by shortening the time required for analysis and automatically recognizing the application to which the anti-analysis technique is applied.
机译:通过使用签名提取自动识别反分析技术的设备包括提取单元,该提取单元在解开应用文件之后从应用程序文件中提取DEX文件和ELF文件,该应用程序文件以APK格式包括压缩执行代码在Android上执行一个检测单元,该检测单元根据签名类型的类型接收所获取的签名,分析地将存储在数据库中的签名的输入签名进行比较,并检测反分析技术中使用的签名,以及确定单元根据检测到的签名确定,应用于应用程序的反分析技术。根据本发明,通过缩短分析所需的时间并自动识别应用抗分析技术的应用,可以实现适当的和快速响应恶意应用。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号