Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Trojan horse decision system based on dynamic code sequence tracking analysis

A dynamic code and judgment system technology, applied in the field of computer systems, can solve problems such as the judgment and analysis of unknown Trojan horses, and achieve the effects of increasing the difficulty of identification, avoiding escape damage, and increasing transparency.

Inactive Publication Date: 2015-02-11
XIAN UNIV OF POSTS & TELECOMM +1
View PDF1 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] In order to solve the above-mentioned main problems in the background technology, the present invention implements a Trojan judgment system based on dynamic code sequence tracking analysis, which solves the problems of fast positioning of known Trojans and judgment and analysis of unknown Trojans, and significantly improves the detection and analysis. efficiency

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Trojan horse decision system based on dynamic code sequence tracking analysis
  • Trojan horse decision system based on dynamic code sequence tracking analysis
  • Trojan horse decision system based on dynamic code sequence tracking analysis

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0027] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the drawings in the embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0028] see figure 1 , the present invention provides a schematic structural diagram of a Trojan horse judging system based on dynamic code sequence tracking analysis, including.

[0029] The whole system is divided into three layers and four business systems, and the three layers are divided into support layer, processing layer and service layer. Four services are divided into query, online analysis, analysis result viewing, reporting and downloading; among them.

[0030] 100 support layer: provide database, network service, WEB service, virtualization and data transmissio...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides a Trojan horse decision system based on dynamic code sequence tracking analysis. The system comprises an interaction module, a decision module, a virtual analysis module, a malicious intention decision sub-module, an encrypting / decrypting module and a report generating and storing module. The interaction module is a carrier of the interaction between a user and a server; the decision module is used for deciding whether a program uploaded by the user is a portable executable (PE) program or not, and whether the program is analyzed or not; the virtual analysis module is used for statically and dynamically analyzing behavior operation of suspicious programs and deciding the malicious intentions and classifications of the programs; the malicious intention decision sub-module is used for completing the decision of the malicious intention of the programs to be detected; the encrypting / decrypting module is used for encrypting / decrypting the files and data transmitted between the virtual analysis module and a server system; the report generating and storing module is used for generating an analysis report and storing the analysis report data and analyzed suspicious program samples. The Trojan horse decision system provided by the invention realizes the efficient detection, and has an effect of recognizing new varied Trojan horses.

Description

technical field [0001] The present invention relates to the field of computer systems, more specifically, to a Trojan horse analysis system based on dynamic code sequence tracking. Background technique [0002] With the rapid development of the Internet, the number and propagation speed of Trojan horses also increase geometrically. A large number of Trojan horse programs will undoubtedly bring a huge impact to the traditional analysis methods. Traditional static scanning has many problems such as not being able to detect Trojan horse variants in time. However, the current dynamic analysis based on sandboxes and virtual machines requires manual intervention, which seriously affects the analysis efficiency. The determination method is not effective enough, and there are a large number of subjective factors. Matching is often based on existing features, making it difficult to effectively monitor unknown Trojans and special Trojans. . Therefore, determining whether a program i...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F21/56
CPCG06F21/566G06F21/561G06F21/563
Inventor 朱志祥张勇吴晨刘盛辉
Owner XIAN UNIV OF POSTS & TELECOMM
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products