一种智能恶意代码分析方法、系统、介质及产品
By combining packed code detection, static analysis, and dynamic sandbox monitoring with threat database queries, the system addresses the shortcomings of traditional malware detection in terms of accuracy and source tracing, achieving efficient identification and source tracing of malware.
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- NAT COMP NETWORK & INFORMATION SECURITY MANAGEMENT CENT
- Filing Date
- 2026-01-07
- Publication Date
- 2026-07-17
AI Technical Summary
Traditional malware detection methods are insufficient in detecting malware that is highly concealed and mutates rapidly, resulting in low detection accuracy and difficulty in effectively identifying unknown or variant malware.
The system obtains raw code data through packing detection and automatic unpacking, extracts static features and dynamic behavior data through static analysis, uses an adaptive sandbox environment for monitoring and defense, generates comprehensive source tracing results, and performs matching queries in conjunction with a threat database.
It improves the accuracy and depth of malicious code detection, enhances the ability to respond to advanced threats, and provides comprehensive intelligent protection.
Smart Images

Figure CN121935908B_ABST