一种恶意安卓虚拟化应用程序检测方法

By combining static and dynamic analysis methods, the APK file is reverse-compiled and control flow graphs and data flow graphs are constructed to detect sensitive permissions and API calls. This solves the problem of inaccurate detection of malicious Android virtualization programs in existing technologies and achieves higher detection accuracy and comprehensiveness.

CN117763548BActive Publication Date: 2026-07-17CHONGQING UNIV OF POSTS & TELECOMM

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
CHONGQING UNIV OF POSTS & TELECOMM
Filing Date
2023-12-22
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

Existing methods for detecting malicious Android virtualization programs are ineffective at accurately identifying malicious features and the detection results are unsatisfactory, especially for detecting various types of virtualization programs.

Method used

By combining static and dynamic analysis methods, the application decompiles APK files, extracts plugin paths, constructs control flow graphs and data flow graphs, analyzes the user interface, detects sensitive permissions and API calls, and comprehensively judges the malicious attributes of the application.

Benefits of technology

It improves the accuracy and comprehensiveness of detecting malicious Android virtualization applications, enabling it to detect malicious behavior at runtime, capture easily overlooked malicious features, and enhance the comprehensiveness and accuracy of detection.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN117763548B_ABST
    Figure CN117763548B_ABST
Patent Text Reader

Abstract

本发明属于网络安全技术领域,具体涉及一种恶意安卓虚拟化应用程序检测方法;包括:获取待测试应用的APK并对其进行反向编译,得到源代码文件;从源代码文件中提取应用程序加载插件的路径;采用静态分析工具对源代码文件进行处理,得到第一隐藏加载行为检测结果;在模拟器中执行APK并动态分析用户交互界面,得到第二隐藏加载行为检测结果;根据应用程序加载插件的路径获取插件并检测插件应用的敏感权限和API调用情况,根据插件的敏感权限和API调用情况分析得到插件检测结果;根据第一、第二隐藏加载行为检测结果和插件检测结果分析得到待测试应用的恶意安卓虚拟化应用程序检测结果;本发明可提升检测的全面性和准确性。
Need to check novelty before this filing date? Find Prior Art