期刊文献+

基于SVM的远程虚拟机检测方法

SVM-based Remote Virtual Machine Detection
原文传递
导出
摘要 虚拟机检测的方法多种多样,但是远程虚拟机检测一直都缺乏有效的手段,文中改进了基于虚拟机的时间依赖的方法,利用TCP时间戳与真实时间的关联性,结合机器学习的方法,提出了一种基于SVM的远程虚拟机检测方法。 The methods of virtual machine detection are veried,but the remote virtual machine detection always lacks effective means. This paper describes an improved time-relied method based on virtual machine. Taking advantage of the connection between TCP timestamp and real time and by integrating the study of machine,this paper proposes a remote virtual detection based on SVM.
作者 郑旭 袁坚
出处 《信息安全与通信保密》 2014年第9期195-198,共4页 Information Security and Communications Privacy
关键词 虚拟机 远程检测 TCP时间戳 virtual machine romote detection TCP timestamp
  • 相关文献

参考文献8

  • 1Tobias Klein.scoopy doo-VMware Fingerprint Suite. http://www.trapkit.de/research/vmm/scoopydoo/scoopy doo.htm .
  • 2Joachims T.Making large-Scale SVM Learning Practical. Advances in Kernel Methods-Support Vector Learning . 1999
  • 3Jason Franklin,Mark Luk,Jonathan M. McCune,Arvind Seshadri,Adrian Perrig,Leendert van Doorn.Remote detection of virtual machine monitors with fuzzy benchmarking[J]. ACM SIGOPS Operating Systems Review . 2008 (3)
  • 4Xu Chen,Andersen,J.Towards an understanding of anti-virtualization and anti-debuggingbehavior in modern malware. Dependable Systems and Networks With FTCS and DCC,2008.DSN2008. IEEE International Conference . 2008
  • 5V Jacobsen,R Braden,D Borman.TCP Extensions for High Performance. RFC 1323 . 1992
  • 6Gerald J. Popek,Robert P. Goldberg.Formal requirements for virtualizable third generation architectures[J]. Communications of the ACM . 1974 (7)
  • 7Christopher J.C. Burges.A Tutorial on Support Vector Machines for Pattern Recognition[J]. Data Mining and Knowledge Discovery . 1998 (2)
  • 8Liston T,Skoudis E.On the Cutting Edge:Thwarting Virtual Machine Detection. . 2006

共引文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部