• Search Research Projects
  • Search Researchers
  • How to Use
  1. Back to previous page

Unknown Virus Detection Technique Using the Wine Log

Research Project

Project/Area Number 22700062
Research Category

Grant-in-Aid for Young Scientists (B)

Allocation TypeSingle-year Grants
Research Field Computer system/Network
Research InstitutionIwate University

Principal Investigator

NAKAYA Naoshi  岩手大学, 工学部, 助教 (20322969)

Project Period (FY) 2010 – 2011
Project Status Completed (Fiscal Year 2011)
Budget Amount *help
¥1,950,000 (Direct Cost: ¥1,500,000、Indirect Cost: ¥450,000)
Fiscal Year 2011: ¥780,000 (Direct Cost: ¥600,000、Indirect Cost: ¥180,000)
Fiscal Year 2010: ¥1,170,000 (Direct Cost: ¥900,000、Indirect Cost: ¥270,000)
Keywordsネットワークセキュリティ技術 / コンピュータウイルス / 未知コンピュータウイルス / Wine / 正規化圧縮距離 / ベクトル間距離
Research Abstract

In this research, I proposed some detection methods employing dynamic heuristics and capable of detecting unknown viruses by using Wine, a tool for executing Windows programs on a Unix-like OS, to capture a log of API function calls made by executable files. When these proposed methods were run on a test suite containing both viruses and harmless non-virus files, these experimental results showed that using Wine to capture a runtime log of API function calls is an effective technique for dynamic heuristic methods.

Report

(3 results)
  • 2011 Annual Research Report   Final Research Report ( PDF )
  • 2010 Annual Research Report
  • Research Products

    (4 results)

All 2012 2010

All Presentation (4 results)

  • [Presentation] Wineを用いたAPIログによるコンピュータウイルスの検出2012

    • Author(s)
      村上智裕、中谷直司、厚井裕司
    • Organizer
      平成23年度第4回情報処理学会東北支部研究会
    • Place of Presentation
      岩手大学
    • Year and Date
      2012-01-21
    • Related Report
      2011 Final Research Report
  • [Presentation] Wineを用いたAPIログによるコンピュータウイルスの検出2012

    • Author(s)
      村上智裕、中谷直司、厚井裕司
    • Organizer
      平成23年度第4回情報処理学会東北支部研究会
    • Place of Presentation
      岩手大学(岩手県)
    • Year and Date
      2012-01-21
    • Related Report
      2011 Annual Research Report
  • [Presentation] 圧縮による類似度比較を適用したウイルスの検出手法2010

    • Author(s)
      辺仙龍、中谷直司、厚井裕司
    • Organizer
      平成22年度第3回情報処理学会東北支部研究会
    • Place of Presentation
      岩手大学
    • Year and Date
      2010-12-18
    • Related Report
      2011 Final Research Report
  • [Presentation] 圧縮による類似度比較を適用したウイルスの検出手法2010

    • Author(s)
      辺仙龍, 中谷直司
    • Organizer
      平成22年度第3回情報処理学会東北支部研究会
    • Place of Presentation
      岩手大学(岩手県)
    • Year and Date
      2010-12-18
    • Related Report
      2010 Annual Research Report

URL: 

Published: 2010-08-23   Modified: 2016-04-21  

Information User Guide FAQ News Terms of Use Attribution of KAKENHI

Powered by NII kakenhi