首页> 外国专利> SANDBOX TESTING METHOD, SANDBOX SYSTEM AND SANDBOX DEVICE

SANDBOX TESTING METHOD, SANDBOX SYSTEM AND SANDBOX DEVICE

机译:沙盒测试方法,沙盒系统及沙盒设备

摘要

A sandbox testing method, a sandbox system and a sandbox device. Said method comprises: initializing a virtual machine and saving an initial state of at least one from among a core file, a registry and a memory of the initialized virtual machine, wherein said core file is a file in a predetermined file set, and said memory comprises a processed module and a thread (310); running a sample program in said virtual machine (320); acquiring a current state of at least one from among the core file, the registry and the memory after running said sample program (330); obtaining a comparison result by means of comparing the initial state of at least one from among the core file, the registry and the memory and the current state of at least one from among the core file, the registry and the memory in the virtual machine, said comparison result indicating whether said core file, registry and memory are altered after running said sample program (340); according to said comparison result, determining whether said virtual machine is infected by said sample program (350); resetting said virtual machine if the virtual machine is infected by said sample program (360); omitting the step in which said virtual machine is reset if the virtual machine is not infected by said sample program, and running a next sample program by means of the virtual machine (370). The present method may increase the efficiency of sandbox testing.
机译:沙箱测试方法,沙箱系统和沙箱设备。所述方法包括:初始化虚拟机并保存已初始化虚拟机的核心文件,注册表和存储器中至少一个的初始状态,其中,所述核心文件是预定文件集中的文件,所述存储器包括处理过的模块和线程(310);在所述虚拟机中运行示例程序(320);在运行所述示例程序之后,从核心文件,注册表和存储器中获取至少一个的当前状态(330);通过比较核心文件,注册表和内存中至少一个的初始状态和虚拟机中核心文件,注册表和内存中的至少一个的当前状态,获得比较结果,所述比较结果指示在运行所述示例程序之后,所述核心文件,注册表和存储器是否被改变(340);根据所述比较结果,确定所述虚拟机是否被所述样本程序感染(350);如果虚拟机被所述样本程序感染,则重置所述虚拟机(360);如果虚拟机未被所述示例程序感染,则省略其中重置所述虚拟机的步骤,并且借助于虚拟机运行下一个示例程序(370)。本方法可以提高沙盒测试的效率。

著录项

  • 公开/公告号WO2018129916A1

    专利类型

  • 公开/公告日2018-07-19

    原文格式PDF

  • 申请/专利权人 HUAWEI TECHNOLOGIES CO. LTD.;

    申请/专利号WO2017CN96503

  • 发明设计人 LIU ZHENHUA;

    申请日2017-08-08

  • 分类号G06F21/53;

  • 国家 WO

  • 入库时间 2022-08-21 12:43:24

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号