首页> 外国专利> A MALWARE DETECTION SYSTEM BASED ON CORRELATION ANALYSIS USING LIVE RESPONSE TECHNIQUES

A MALWARE DETECTION SYSTEM BASED ON CORRELATION ANALYSIS USING LIVE RESPONSE TECHNIQUES

机译:基于实时响应技术的相关性分析的恶意软件检测系统

摘要

PURPOSE: A malware detection system based on correlation analysis using live response techniques is provided to rapidly and accurately detect malware related to an advanced persistent threat (APT). CONSTITUTION: A malware detection system based on correlation analysis using live response techniques comprises a domain collector (31), a session information collector (32), a process collector (33), an execution file collector (34), and an analysis and display unit (35). The domain collector collects domain information from system information. The session information collector collects session information from the system information and searches the route of a process having a process ID. The process collector collects process information. The execution file collector collects execution file information. The analysis and display unit analyzes and displays the domain information, the session information, the process information, and execution file information. [Reference numerals] (31) Domain collector; (32) Session information collector; (33) Process collector; (34) Execution file collector; (35) Analysis and display unit; (36) Storage unit
机译:目的:提供一种基于基于实时分析技术的相关性分析的恶意软件检测系统,以快速,准确地检测与高级持续威胁(APT)相关的恶意软件。构成:基于基于实时响应技术的相关性分析的恶意软件检测系统,包括域收集器(31),会话信息收集器(32),进程收集器(33),执行文件收集器(34)以及分析和显示单位(35)。域收集器从系统信息中收集域信息。会话信息收集器从系统信息中收集会话信息,并搜索具有进程ID的进程的路由。流程收集器收集流程信息。执行文件收集器收集执行文件信息。分析和显示单元分析并显示域信息,会话信息,过程信息和执行文件信息。 [附图标记](31)域收集器; (32)会话信息收集器; (33)流程收集器; (34)执行文件收集器; (三十五)分析显示单位; (36)储物单元

著录项

  • 公开/公告号KR20130096565A

    专利类型

  • 公开/公告日2013-08-30

    原文格式PDF

  • 申请/专利号KR20120018121

  • 发明设计人 PARK WON HYUNG;

    申请日2012-02-22

  • 分类号G06F21;G06F11/30;

  • 国家 KR

  • 入库时间 2022-08-21 16:26:24

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号