Webshell detection method based on image analysis, terminal equipment and storage medium
A technology of image analysis and detection methods, applied in image analysis, image data processing, instruments, etc., which can solve the problem of detection of false negative rate and false positive rate that cannot cross domains, bottlenecks, well-defined behavioral characteristics and complete coverage of risk models and other issues to achieve the effect of improving detection performance, avoiding manual maintenance, and avoiding linear growth
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Example Embodiment
[0030] Example 1:
[0031] The embodiment of the present invention provides a webShell detection method based on image analysis, such as figure 1 As shown, the method includes the following steps:
[0032] S1: Collect two different types of different types of different types of normal and abnormalities.
[0033] S2: Generates a corresponding RGB image based on the acquired WebShell sample and the OPCode sequence and the OPCode frequency of WebShell to be tested.
[0034] This embodiment will be described as an example in the form of a PHP code. When the Zend virtual machine performs a PHP code, the following four steps are generally experienced:
[0035] 1) Scanning (lexing), the PHP code is converted to the language clip;
[0036] 2) PARSING, the language fragment is converted into a simple meaningful expression;
[0037] 3) Compilation, which is compiled into opcodes;
[0038] 4) Execution, that is, the Zend engine executes opcodes sequentially.
[0039] PHP is above the Zend Vi...
Example Embodiment
[0072] Example 2:
[0073] The present invention also provides an image analysis-based WebShell detecting terminal device, including a memory, a processor, and a computer program stored in the memory and can run on the processor, the processor performs the computer program. The steps in the above method embodiment of the embodiment of the present invention are implemented.
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap