首页> 外国专利> APPARATUS AND METHOD FOR THE DETECTION OF DRIVE-BY DOWNLOAD USING UNUSUAL BEHAVIOR MONITORING

APPARATUS AND METHOD FOR THE DETECTION OF DRIVE-BY DOWNLOAD USING UNUSUAL BEHAVIOR MONITORING

机译:利用异常行为监测来检测行驶中行驶的装置和方法

摘要

The present invention relates to a drive-by download detection apparatus using abnormal behavior monitoring and a method thereof, and a drive-by download detection apparatus using abnormal behavior monitoring according to an embodiment of the present invention is a drive-by download (hereinafter referred to as "DBD"). An analysis DB for storing a first analysis target URL for detection; An IE execution unit for executing the first version of Internet Explorer using the first analysis target URL; An abnormal behavior monitoring unit for monitoring whether an abnormal behavior occurs by executing the first version of Internet Explorer; An abnormal behavior analysis unit for determining a DBD detection by performing a correlation analysis on the monitored abnormal behavior monitoring results; And a DBD detection operation unit for determining and processing a DBD detection operation process according to the determined DBD detection determination result.
机译:本发明涉及一种使用异常行为监视的偷渡式下载检测装置及其方法,根据本发明实施例的使用异常行为监视的偷渡式下载检测装置为改为“ DBD”)。分析数据库,用于存储第一分析目标URL进行检测; IE执行单元,用于使用第一分析目标URL执行Internet Explorer的第一版本;异常行为监视单元,用于通过执行第一版Internet Explorer来监视是否发生异常行为;异常行为分析单元,用于通过对所监视的异常行为监视结果进行相关分析来确定DBD检测;以及DBD检测操作单元,用于根据所确定的DBD检测确定结果来确定和处理DBD检测操作过程。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号