Virtualization Detection Based on Data Fusion
Characteristic analysis and timing analysis are two methods for virtualization detection. However,the accuracy of characteristic analysis is low and the timing analysis is not efficient. Moreover,current methods based on timing analysis make use of the privileged instructions separately without data fusion and the accuracy of timing analysis can be improved further. In this paper,we introduce a new method in timing analysis based on data fusion to improve the accuracy of virtualization detection. Our method combines characteristic analysis and timing analysis,which makes virtualization detection more efficient. A virtualization detection tool is implemented and several experiments are made. The results show that our method is both effective and efficient.
virtualization detection characteristic analysis timing analysis data fusion
Wang Jiabin Lian Yifeng Chen Kai
State Key Laboratory of Information Security,Institute of Software,Chinese Academy of Sciences,Beiji State Key Laboratory of Information Security,Institute of Software,Chinese Academy of Sciences,Beiji
国际会议
西安
英文
2600-2603
2011-12-23(万方平台首次上网日期,不代表论文的发表时间)