The invention relates to the technical field of
cloud computing security, and particularly relates to an intelligent
virus invasion detection
system for a cloud platform
server and a method thereof. The
system disclosed by the invention comprises a cloud platform monitoring subsystem, a cloud platform custom local
vulnerability library and a cloud platform crawler subsystem. The method includes the following steps: enabling the cloud platform crawler subsystem to regularly obtain platform-related vulnerabilities from various official website
vulnerability libraries to send to the cloud platform custom local
vulnerability library; enabling the cloud platform monitoring subsystem to regularly monitor
process information of a service host, performing the next step if abnormalities are found,and otherwise, repeating the current step; automatically detecting current abnormal
process information of the service host according to a
virus process feature
library, and performing analysis to obtain abnormal keywords; further scanning the cloud platform custom local vulnerability library based on the abnormal keywords to obtain related vulnerability information; and enabling the cloud platform monitoring subsystem to generate alarms and publish the abnormal
process information of the service host and the related vulnerability information. According to the scheme of the invention, a cloudplatform can intelligently monitor the
virus invasion of the service host, and a method for quickly solving intrusive viruses can be provided for cloud platform administrators and users.