论文部分内容阅读
根据基本输入输出系统(BIOS)恶意代码的植入方式,将其分为工业标准体系结构、高级配置和电源管理接口、外部设备互连模块恶意代码3类,分别对其实现过程进行研究。在此基础上,设计一种BIOS恶意代码检测系统,包括采样、模块分解、解压缩、恶意代码分析模块。应用结果表明,该系统能检测出BIOS镜像文件中植入的恶意代码,可有效增强BIOS的安全性。
According to the implanted method of BIOS malicious code, it is divided into three categories: industry standard architecture, advanced configuration and power management interface, and external device interconnection module malicious code, respectively, to study the implementation process. On this basis, design a BIOS malicious code detection system, including sampling, module decomposition, decompression, malicious code analysis module. Application results show that the system can detect malicious code embedded in the BIOS image file, which can effectively enhance the security of the BIOS.