Intranet network security monitoring method and system and related components

A network security and intranet technology, applied in the field of network security, can solve the problems of weak awareness of computer host prevention, difficulty in cleaning, poor execution efficiency and risk isolation effect, etc.

Pending Publication Date: 2022-04-08
HANGZHOU ANHENG INFORMATION TECH CO LTD
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0002] At present, the internal network environment of an enterprise is usually relatively complex and involves a large number of people. At the same time, the host computer has a weak awareness of prevention, which makes the host computer very susceptible to viruses that are highly contagious and difficult to cure, such as ransomware and mining Trojans. This type of virus is extremely difficult to completely clean up
[0003] The traditional cleaning method is mainly manual, which requires manual inspection of all hosts one by one and installation of anti-virus software. The execution efficiency and risk isolation effect are poor, and it is difficult to block the spread of infected hosts through the intranet, and it is very easy to kill Unclear boundaries lead to repeated infections of intranet hosts

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Intranet network security monitoring method and system and related components
  • Intranet network security monitoring method and system and related components
  • Intranet network security monitoring method and system and related components

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0041] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0042] The traditional cleaning method is mainly manual, which requires manual inspection of all hosts one by one and installation of anti-virus software. The execution efficiency and risk isolation effect are poor, and it is difficult to block the spread of virus-infected hosts through the intranet. Unclear killing boundaries lead to repeated infections of intranet hosts.

[0043] This application uses the virus alarm information to conduct automatic alarm an...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an intranet network security monitoring method and system and related components. The method comprises the following steps: acquiring virus alarm information on a target host; performing automatic alarm analysis on the target host according to all the virus alarm information to obtain an alarm reference score; when the alarm reference score exceeds a first threshold value, executing a semi-blocking access isolation action to block a communication behavior within a first traffic range of the target host; and if the alarm reference score exceeds a second threshold value, executing a full-blocking access isolation action to block a communication behavior in a second traffic range of the target host, and triggering searching and killing software to perform safe searching and killing. The automatic alarm analysis result is comprehensive, reliable, efficient and accurate, a corresponding isolation action is adopted by using the alarm reference score, related communication behaviors of the target host are quickly blocked, the possibility of transverse diffusion of viruses through an intranet is eliminated, normal operation of other communication is ensured, the blocking action is effective and accurate in range, and the communication efficiency is improved. And the method has extremely high application value.

Description

technical field [0001] The invention relates to the field of network security, in particular to an intranet network security monitoring method, system and related components. Background technique [0002] At present, the internal network environment of an enterprise is usually relatively complex and involves a large number of people. At the same time, the host computer has a weak awareness of prevention, which makes the host computer very susceptible to viruses that are highly contagious and difficult to cure, such as ransomware and mining Trojans. Such viruses are extremely difficult to completely clean up. [0003] The traditional cleaning method is mainly manual, which requires manual inspection of all hosts one by one and installation of anti-virus software. The execution efficiency and risk isolation effect are poor, and it is difficult to block the spread of infected hosts through the intranet, and it is very easy to kill Unclear boundaries lead to repeated infections...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & AuthorityApplications(China)
IPC IPC(8): G06F21/56
Inventor赵贤哲范渊刘博
OwnerHANGZHOU ANHENG INFORMATION TECH CO LTD