首页> 外国专利> METHOD FOR PROTECTING SOFTWARE EXECUTABLE FILES THROUGH PROTECTION FROM DYNAMIC ANALYSIS AND STATIC ANALYSIS, AND COMPUTER-READABLE RECORDING MEDIUM RECORDING CORRESPONDING SOFTWARE EXECUTABLE FILE PROTECTING PROGRAMS

METHOD FOR PROTECTING SOFTWARE EXECUTABLE FILES THROUGH PROTECTION FROM DYNAMIC ANALYSIS AND STATIC ANALYSIS, AND COMPUTER-READABLE RECORDING MEDIUM RECORDING CORRESPONDING SOFTWARE EXECUTABLE FILE PROTECTING PROGRAMS

机译:通过动态分析和静态分析通过保护来保护软件可执行文件的方法,以及对应于计算机可读记录介质记录的软件可执行文件保护程序

摘要

The present invention relates to a method for protecting software executable files through protection from dynamic analysis and static analysis, and to a computer-readable recording medium recording software executable file protecting programs through protection from dynamic analysis and static analysis. When a subject file is an executable file, the medium of the present invention comprises: a code encryption unit performing encryption on the execution code of a loaded executable file if the executable file is loaded onto a memory by a system loader; a reverse-code engineering protecting unit protecting reverse-code engineering on the loaded executable file; and a memory access blocking unit blocking access to a memory region onto which the executable file has been loaded. Thus, according to the present invention, protection is possible from analysis on executable files and block forgeries on a memory region by the encryption of the execution code of an executable file, a reverse-code engineering protection technique, and a malicious memory access blocking technique before branching from a system loader to the executable code of a corresponding executable file.method for protecting software executable files through protection from dynamic analysis and static analysis, and computer-readable recording medium recording corresponding software executable file protecting programs
机译:本发明涉及一种通过对动态分析和静态分析的保护来保护软件可执行文件的方法,并且涉及一种记录了通过对动态分析和静态分析的保护来保护程序的软件可执行文件的计算机可读记录介质。当主题文件是可执行文件时,本发明的介质包括:代码加密单元,如果所述可执行文件由系统加载器加载到存储器上,则对加载的可执行文件的执行代码进行加密;反向代码工程保护单元,用于保护加载的可执行文件上的反向代码工程;存储器访问阻止单元阻止对已经加载了可执行文件的存储器区域的访问。因此,根据本发明,通过对可执行文件的执行代码进行加密,反向代码工程保护技术和恶意存储器访问阻止技术,可以防止对可执行文件的分析和对存储区域上的块伪造的分析。通过从动态分析和静态分析的保护来保护软件可执行文件的方法,以及记录了相应软件可执行文件保护程序的计算机可读记录介质,从而从系统加载器分支到相应可执行文件的可执行代码之前。

著录项

  • 公开/公告号WO2013042808A1

    专利类型

  • 公开/公告日2013-03-28

    原文格式PDF

  • 申请/专利权人 INFRAWARE TECHNOLOGY INC.;RYU HYEOK-GON;

    申请/专利号WO2011KR06986

  • 发明设计人 RYU HYEOK-GON;

    申请日2011-09-22

  • 分类号G06F21/22;G06F9/44;G06F9/30;

  • 国家 WO

  • 入库时间 2022-08-21 16:34:08

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号