首页> 外国专利> SYSTEM AND METHOD FOR DETECTING MALIGNANT CODE BASED ON VIRTUAL AND REAL MACHINE

SYSTEM AND METHOD FOR DETECTING MALIGNANT CODE BASED ON VIRTUAL AND REAL MACHINE

机译:基于虚拟机和真实机的恶意代码检测系统及方法

摘要

The present invention relates to a system and method for detecting malicious code based on virtual and real machine. The system for detecting malicious code based on virtual and real machine according to an embodiment of the present invention provides malicious code in a virtual machine environment for a file to be analyzed. A virtual machine analysis unit that performs dynamic analysis for detection, a real machine analysis unit that performs dynamic analysis to detect malicious codes in a real machine environment on the file to be analyzed, and the virtual machine analysis unit or the real machine analysis unit. A database storing the analysis result may be included, and the real machine analysis unit may perform dynamic analysis on an analysis target file including a bypass log for bypassing the virtual machine analysis unit.
机译:本发明涉及一种基于虚拟机和真实机的恶意代码检测系统和方法。根据本发明实施例的基于虚拟机和真实机的恶意代码检测系统在虚拟机环境中为要分析的文件提供了恶意代码。执行检测动态分析的虚拟机分析单元,执行动态分析以检测要分析的文件上的真实计算机环境中的恶意代码的真实计算机分析单元以及虚拟机器分析单元或真实计算机分析单元。可以包括存储分析结果的数据库,并且真实机器分析单元可以对分析目标文件执行动态分析,该分析目标文件包括用于绕过虚拟机分析单元的绕过日志。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号