Malicious code detection method and system

A malicious code detection and detection point technology, applied in the direction of platform integrity maintenance, etc., can solve the problems of unknown virus detection ability, slow heuristic detection speed, etc.

Active Publication Date: 2013-11-27
SHENZHEN ANZHITIAN INFORMATION TECH
View PDF2 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] The present invention provides a malicious code detection method and system, which solves the problems of no detection ability and slow heuristic detection speed for unknown viruses based on binary signature codes, and improves the cross-platform detection ability

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Malicious code detection method and system
  • Malicious code detection method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0043] In order to enable those skilled in the art to better understand the technical solutions in the embodiments of the present invention, and to make the above-mentioned purposes, features and advantages of the present invention more obvious and easy to understand, the technical solutions in the present invention will be further detailed below in conjunction with the accompanying drawings illustrate.

[0044] The invention provides a malicious code detection method and system, which solves the problems of no detection ability for unknown viruses based on binary signature codes and slow heuristic detection speed, and improves the cross-platform detection ability.

[0045] A malicious code detection method, such as figure 1 shown, including:

[0046] S101: Load at least one virus signature database, the virus signature database includes detection points, identifications, characteristics and detection results corresponding to the detection points;

[0047] S102: Analyzing wh...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the field of anti-virus of computers and provides a malicious code detection method and system. The method combines binary system feature codes and heuristic detection and comprises the following steps of: loading a virus feature base, a detection point and a detection identifier by taking an unknown virus detection method as a feature point; analyzing a detection target, and if the detection point appears, recording the identifier corresponding to the detection point; judging whether to convert and shorten the identifier; matching the processing result which is regarded as a feature with features in the loaded virus feature base; judging whether to carry out secondary detection; if so, detecting by using a next virus feature base; otherwise, reporting the result. By the adoption of the method and the system provided by the invention, the problem of low speed of the heuristic detection is solved; in addition, since a feature acquisition method and the detection method are separated, the capacity of cross-platform detection is improved.

Description

technical field [0001] The invention relates to the field of computer anti-virus, in particular to a malicious code detection method and system. Background technique [0002] With the popularization of computers and the development of network technology, computer viruses are also increasingly rampant, and the detection methods of malicious codes are also constantly improving. Now the detection of malicious codes can be detected based on binary signatures and behavioral heuristics. The detection method based on the binary signature is fast, but it has no detection ability for unknown viruses; the behavior heuristic detection can detect unknown viruses, but the performance is not as fast as the detection method of the binary signature, and sandboxes are used for dynamic behavior analysis. Possibility, poor cross-platform detection ability and poor maintainability. Contents of the invention [0003] The invention provides a malicious code detection method and system, which s...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G06F21/56
Inventor 关墨辰肖新光
Owner SHENZHEN ANZHITIAN INFORMATION TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products