文章提出了一种针对安卓恶意代码的逆向分析用例自动生成系统,系统从XML敏感权限分析入手,使用程序切片技术从恶意代码中获取调用序列,再利用逆向用例生成技术获得其对应的用例图,帮助分析人员准确获知代码的真实意图。实验结果表明,该系统对基于安卓的系统恶意代码有较为准确的用例还原效果,使用该系统还可以对安卓恶意代码家族的相似性和演变实施深入分析。
In this paper, a case auto generation system using reverse analysis for Android malware is presented. The system extracts the sensitive access from the XML, obtains the calling sequences u- sing the program slicing technique, and generates the corresponding Case diagrams by reverse generation techniques, which helps analysts accurately acquire the true intentions of malware. The experimental results show that the system has good accuracy in reversing case, and it can be used to analyze the similarity among the samples in Android malware family and their evolution.