| Binary security is one of the most important links in the bottom of the computer,and the relevant technologies contained therein need to be mastered through experiment and practice.However,there are few experimental related to the existing relevant courses have the following shortcomings: there is no corresponding online evaluation system.Students only need to submit experimental reports,and the final results also need to be corrected and scored by the teaching teacher or assistant,which not only increases the cost of manpower and time.Therefore,in view of the above problems,this thesie designs an online evaluation system mainly for Windows process injection technology and Windows virus technology experiment,and focuses on the detection and other key technologies.This theis presents an automatic detection system for Windows injection and Windows virus experiment.In order to run the injection experiment,this thesie proposes a test process creation student experiment subprocess detection method.In order to ensure that the injection experiment is conducted in the required way and the injection is effective in the Windows injection experiment,this thesie proposes a kernel thread detection driver,which performs dual detection in Ring0 and Ring3 states? In order to accurately detect the behavior of the program submitted by students,this thesie introduces the Hook technology,combined with the kernel thread detection driver,to ensure that the experimental program completes the specified operation as required? In order to communicate between parent and child processes,the anonymous pipeline technology is introduced and applied to the system.On the basis of the above technologies,this thesie realizes automatic correction for the injection experiments in the binary security experiment,expands the function of the original computer virus experiment,and finally tests the functionality of the automatic evaluation function of the experiment and the online evaluation system,and realizes a automatic evaluation system for binary security experiment. |