Malicious application detection system and method for android mobile phone
A malicious application and detection system technology, applied in computer security devices, instruments, electrical digital data processing, etc., can solve the problems of long inspection period, system damage, and no defense ability against unknown attacks, and achieve the goal of improving efficiency and accuracy Effect
Patent Information
- Authority / Receiving Office
- CN · China
- Current Assignee / Owner
- Publication Date
- 2018-09-28
Smart Images

Figure 1 
Figure 2 
Figure 3
Abstract
Description
technical field
[0001] The invention relates to the technical field of mobile phone detection, in particular to a system and method for detecting malicious applications of Android mobile phones. Background technique
[0002] Recently, the foreign market data research company Kantar woroldpanel officially announced the latest ranking of the global smartphone market as of the first quarter of 2017. Taking the domestic market as an example, the market share of Android phones has risen from 76.4% last year to 86.4%. , which increased by 10%. The domestic mobile phone manufacturing industry is booming, and the operating system it uses is Android. With the increase of Android mobile phone users, Android malicious applications also increase. According to the report of Qihoo 360, we know that in 2016, 360 Internet The Security Center has intercepted a total of 14.033 million new malicious program samples on the Android platform, with an average of 38,000 new malicious program sampl...
Examples
Embodiment Construction
[0034] The following will clearly and completely describe the technical solutions in the embodiments of the invention in conjunction with the accompanying drawings in the embodiments of the invention,
[0035] Such as Figure 1 to Figure 7 As shown, the present invention provides a malicious application detection system for Android mobile phones. The malicious application detection system for Android mobile phones includes a positive and negative sample collection module 1, a static feature extraction module 2, a dynamic feature extraction module 3, a neural network module 4 and Monitoring result output module 5;
[0036] The positive and negative sample collection module 1 includes a positive sample set and a negative sample set, the positive sample set is a security software sample set, and the negative sample set is a malicious software sample set;
[0037] The static feature extraction module 2 includes an AndroidManifest.xml file 201 and a class.dex file 202, the Android...