DEVICE FOR AUTOMATICALLY IDENTIFYING ANTI-ANALYSIS TECHNIQUES BY USING SIGNATURE EXTRACTION AND METHOD THEREFOR

    公开(公告)号:US20210141875A1

    公开(公告)日:2021-05-13

    申请号:US17262745

    申请日:2018-11-26

    Abstract: A device for automatically identifying anti-analysis techniques by using the signature extraction, includes an extraction unit which extracts a DEX file and an ELF file from an application file after unpacking the application file, which is in an APK format and includes compressed execution code to be executed on Android, a detection unit which receives the acquired signature classified according to types of the signature, analytically compares the input signature with the signature stored in a database, and detects the signature used in anti-analysis techniques, and a determination unit which determines according to the detected signature what anti-analysis technique is applied to the application. According to the present invention, it is possible to enable an appropriate and quick response to damages due to malicious applications by shortening the time required for analysis and automatically recognizing the application to which the anti-analysis technique is applied.

Patent Agency Ranking