The invention belongs to the field of
network security, in particular to an automatic malicious code
analysis method and an automatic malicious code analysis
system. The automatic malicious code analysis
system comprises a
client browser, a control center, a sample receiving and registering module, a
sample processing module, a
report generation module and a
client information
database. The automatic malicious code
analysis method comprises the following steps of: calculating a HASH value of a sample file; comparing the HASH value of the sample file with that of an originally analyzed sample, judging whether the sample file is analyzed before, and if the sample file is analyzed before, directly returning the old analysis result; if the sample file is not analyzed, calling a
virus killing engine to scan viruses, judging whether a malicious code is a known malicious code, and if the malicious code is the known malicious code, acquiring information of the malicious code, such as the name, the type and the
hazard grade; if the sample file has the unknown malicious code, comprehensively and dynamically analyzing the sample file, wherein the malicious code can be classified as a computer malicious code and a
mobile phone malicious code according to different platforms on which the malicious code runs. By the automatic malicious code
analysis method and the automatic malicious code analysis
system, known malicious codes in a computer and an intelligent
mobile phone can be quickly and effectively identified; and various malicious operation behaviors of unknown malicious codes during running can be accurately analyzed.