Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A heuristic detection method, system and storage medium for nested class files

A detection method and heuristic technology, applied in the field of network security, can solve the problems of consuming a lot of resources and time, not being fast enough, and wasting resources, etc., and achieve the effect of improving the speed.

Active Publication Date: 2021-07-20
HARBIN ANTIY TECH
View PDF7 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] The traditional heuristic detection technology analyzes the sample entity, such as analyzing the logical structure, dynamic execution in the virtual environment, etc., so as to perform heuristic detection, but it takes a lot of resources and time, is not fast enough, and wastes resources to a certain extent

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A heuristic detection method, system and storage medium for nested class files
  • A heuristic detection method, system and storage medium for nested class files

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0030] In order to enable those skilled in the art to better understand the technical solutions in the embodiments of the present invention, and to make the above-mentioned purposes, features and advantages of the present invention more obvious and easy to understand, the technical solutions in the present invention will be further detailed below in conjunction with the accompanying drawings illustrate.

[0031] A heuristic detection method for nested class files such as figure 1 shown, including:

[0032] S101: performing file splitting on the acquired nested class file;

[0033] S102: Acquire the split file type;

[0034] S103: Carry out regular processing on file types, and organize them into knowledge data;

[0035] S104: Match the knowledge data with the knowledge base; if the matching is successful, the nested class file is malicious, output the detection result, and end the detection; otherwise, analyze the maliciousness of the nested class file that is not successfu...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The present invention proposes a heuristic detection method, system, and storage medium for nested files. The method includes: splitting the obtained nested files; Regularized processing, sorting into knowledge data; matching the knowledge data with the knowledge base; if the matching is successful, the nested class file is malicious, output the detection result, and end the detection; otherwise, the nested class file that has not been matched successfully file for malicious analysis. The present invention does not need complex logical analysis, nor does it need a virtual environment to dynamically execute scripts, but performs heuristic detection based on the nature of threatening behaviors that will occur in abnormal environments based on nested class files, which can effectively improve detection speed, accuracy, etc.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a heuristic detection method, system and storage medium for nested class files. Background technique [0002] With the upgrading of computers and the popularization of the Internet, malicious codes are also evolving accordingly, showing a high growth trend both in quantity and in general. [0003] The traditional heuristic detection technology analyzes the sample entity, such as analyzing the logical structure, dynamic execution in the virtual environment, etc., so as to perform heuristic detection, but it takes a lot of resources and time, is not fast enough, and wastes resources to a certain extent . Contents of the invention [0004] Based on the above problems, the present invention proposes a heuristic detection method, system and storage medium for nested files, and performs heuristic detection according to the type of nested files to effectively improve the det...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): G06F21/56G06F16/2458
CPCG06F21/562G06F16/2462
Inventor 李增光童志明何公道肖新光
Owner HARBIN ANTIY TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products