...
首页> 外文期刊>Mobile Information Systems >The Effective Ransomware Prevention Technique Using Process Monitoring on Android Platform
【24h】

The Effective Ransomware Prevention Technique Using Process Monitoring on Android Platform

机译:在Android平台上使用进程监视进行有效的勒索软件预防技术

获取原文
获取原文并翻译 | 示例
           

摘要

Due to recent indiscriminate attacks of ransomware, damage cases including encryption of users' important files are constantly increasing. The existing vaccine systems are vulnerable to attacks of new pattern ransomware because they can only detect the ransomware of existing patterns. More effective technique is required to prevent modified ransomware. In this paper, an effective method is proposed to prevent the attacks of modified ransomware on Android platform. The proposed technique specifies and intensively monitors processes and specific file directories using statistical methods based on Processor usage, Memory usage, and I/O rates so that the process with abnormal behaviors can be detected. If the process running a suspicious ransomware is detected, the proposed system will stop the process and take steps to confirm the deletion of programs associated with the process from users. The information of suspected and exceptional processes confirmed by users is stored in a database. The proposed technique can detect ransomware even if you do not save its patterns. Its speed of detection is very fast because it can be implemented in Android source code instead of mobile application. In addition, it can effectively determine modified patterns of ransomware and provide protection with minimum damage.
机译:由于最近对勒索软件的肆意攻击,包括对用户重要文件进行加密在内的损害案件不断增加。现有的疫苗系统很容易受到新模式勒索软件的攻击,因为它们只能检测到现有模式的勒索软件。需要更有效的技术来防止修改的勒索软件。本文提出了一种有效的方法来防止修改的勒索软件在Android平台上的攻击。所提出的技术使用基于处理器使用率,内存使用率和I / O速率的统计方法指定并集中监视进程和特定文件目录,以便可以检测到具有异常行为的进程。如果检测到运行可疑勒索软件的进程,则建议的系统将停止该进程并采取步骤以确认从用户删除与该进程相关联的程序。用户确认的可疑和异常过程的信息存储在数据库中。所提出的技术可以检测勒索软件,即使您不保存其特征码。它的检测速度非常快,因为它可以用Android源代码而不是移动应用程序实现。此外,它可以有效地确定勒索软件的修改模式并以最小的损失提供保护。

著录项

  • 来源
    《Mobile Information Systems》 |2016年第2期|2946735.1-2946735.9|共9页
  • 作者单位

    Soongsil Univ, Sch Comp, Sangdo Ro, Seoul 06978, South Korea;

    Soongsil Univ, Sch Comp, Sangdo Ro, Seoul 06978, South Korea;

    Soongsil Univ, Sch Comp, Sangdo Ro, Seoul 06978, South Korea;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号