首页> 外国专利> Apparatus and Method for Identifying Variety Malicious Code Using Static Analysis and Dynamic Analysis

Apparatus and Method for Identifying Variety Malicious Code Using Static Analysis and Dynamic Analysis

机译:利用静态分析和动态分析识别各种恶意代码的设备和方法

摘要

A method for identifying a variant malicious code according to an embodiment of the present invention includes the steps of: firstly classifying a plurality of incoming malicious codes into existing malicious codes or variant malicious codes through static analysis; classifying the firstly classified existing malicious codes based on learning data which is previously learned or selecting at least one representative malicious code by dynamically analyzing data of the firstly classified variant malicious codes for a secondary classification; and identifying the mutual relationship of the representative malicious code and the secondarily classified existing malicious codes according to a predetermined reference value. Accordingly, the present invention can more accurately and flexibly analyze the variant malicious code.
机译:根据本发明实施例的识别变体恶意代码的方法,包括以下步骤:首先通过静态分析将多个传入的恶意代码分为现有的恶意代码或变体恶意代码;根据先前学习到的学习数据,对第一分类的现有恶意代码进行分类,或者通过动态分析第一分类的变体恶意代码的数据进行二次分类,选择至少一个代表性的恶意代码;根据预定的参考值,识别代表恶意代码和第二分类现有恶意代码的相互关系。因此,本发明可以更准确和灵活地分析变体恶意代码。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号