An Escape Detection Method Based on Sandbox Virtual Machine
A virtual machine escape and detection method technology, applied in the direction of platform integrity maintenance, etc., can solve problems such as network environment hazards and malicious file missed judgments
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0033] The present invention will be described in further detail below in conjunction with the examples, but the protection scope of the present invention is not limited thereto.
[0034] The invention relates to an escape detection method based on a sandbox virtual machine, which uses a monitoring program and a comprehensive analysis method to analyze and judge suspicious files. The purpose of the monitoring program is to monitor the process of the target suspicious file and record the operating system called by the process. Behaviors such as APIs and corresponding parameters, the comprehensive analysis method is to judge from the recorded behaviors whether there is a sandbox virtual machine escape behavior in suspicious files.
[0035] The method includes the following steps.
[0036] Step 1: Put the file to be detected into the sandbox virtual machine.
[0037] In the present invention, if the file to be detected is malicious software, there may be behaviors of judging whe...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com