An automatic sample behavior collection method and a device and a system therefor

A collection method and collection device technology, which are applied in the field of network security and can solve problems such as failure to collect samples, failure to consider customer operating systems and network environments, and business system paralysis.

Inactive Publication Date: 2016-08-17
INST OF INFORMATION ENG CHINESE ACAD OF SCI
View PDF4 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, the above patent application does not consider the possibility that malicious samples may damage the guest operating system and network environment on which it is running.
If the malicious sample destroys the client operating system through system vulnerabilities, no behavior information of the sample can be collected at this time; and if the malicious sample uses ARP attack to attack the connected network environment, the entire business system may be paralyzed
In addition, there is no patent or literature that proposes a virtualized resource management and allocation strategy suitable for automated sample behavior collection

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • An automatic sample behavior collection method and a device and a system therefor
  • An automatic sample behavior collection method and a device and a system therefor
  • An automatic sample behavior collection method and a device and a system therefor

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0037] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is a part of the embodiments of the present invention, but not all of them. Based on the embodiments in the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the embodiments of the present invention.

[0038] The embodiment of the present invention provides an automatic sample behavior collection method, such as figure 1 As shown, the method includes:

[0039] S100. When the log collector receives the sample to be processed, apply to the task allocator for a behavior collection unit of the same type as the ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiments of the invention provide an automatic sample behavior collection method and a device and a system therefor. The method comprises the steps that when receiving to-be-processed samples, a log collector applies to a task distributor for a behavior collection unit having the same type as the to-be-processed samples; when the task distributor returns the behavior collection unit, the log collector triggers the behavior collection unit to process the to-be-processed samples and record behavior in logs; the log collector reads logs from the behavior collection unit after a first preset period of time and notifies the task distributor to release the behavior collection unit. The device and the system are used for implementing the automatic sample behavior collection method. Virtual resources of automatic sample behavior collection can be managed and allocated, so that the stable operation of the automatic sample behavior collection system is guaranteed.

Description

technical field [0001] The embodiments of the present invention relate to the technical field of network security, and in particular to an automatic sample behavior collection method and its device and system. Background technique [0002] The automatic sample behavior collection system is mainly used for resource management and software behavior collection in the virtual local area. Usually, the behavior collection system puts the behavior collection program and the samples to be analyzed in a controllable operating environment at the same time, starts the samples to be analyzed and the behavior collection program, and collects the behavior sequences collected by the behavior collection program and uploads them to related systems for further analysis. In order to realize the behavior collection of a large number of samples, it is necessary to organize and manage the virtual environment used to complete the behavior collection. [0003] Since the samples to be analyzed may...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/55G06F9/455G06F11/30
CPCG06F21/552G06F9/45558G06F11/3006G06F2009/45587G06F2009/45591
Inventor 喻民姜建国刘超李敏刘志松
Owner INST OF INFORMATION ENG CHINESE ACAD OF SCI
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products