首页> 外国专利> METHOD FOR COLLECTING BLACKMARKET CRAWLER FOR MOBILE MALWARE

METHOD FOR COLLECTING BLACKMARKET CRAWLER FOR MOBILE MALWARE

机译:移动恶意软件黑市爬虫的收集方法

摘要

A black-market site collecting system according to the present invention relates to a black-market collecting system for chasing a mobile malware application spreading site. The black-market site collecting system includes: a black-market collecting module configured to collect black-market doubtful websites or black-market application doubtful Android application package (APK) files by using a search word related to a black-market through a portal site, and generate a URL list of the collected black-market doubtful websites; an application static analysis module configured to decompile the collected APK files to get a source code and detect a URL of a website from which the corresponding application is spread; a website analysis module configured to analyze the detected URL of the application static analysis module or each URL pattern of the URL lists to collect APK files and generate an APK collecting pattern rule regarding an APK file collecting path; and a database configured to store the URL list of the collected black-market doubtful websites and the generated APK collecting pattern rule. The present invention provides a black-market site collecting system for analyzing the URL that is expected as a black-market site or the APK files that are expected as a black-market application on the basis of research results through portal sites such as Google, Naver, and Daum to determine whether they are black-market sites. The present invention suggests a method of collecting the black-market site based on a search word. Through the black-market site collecting method, the black-market site may be continuously collected to monitor whether the malware application is spread.
机译:根据本发明的黑市站点收集系统涉及一种用于追踪移动恶意软件应用传播站点的黑市收集系统。黑市网站收集系统包括:黑市收集模块,用于通过门户网站使用与黑市相关的搜索词,收集黑市可疑网站或黑市应用可疑Android应用包(APK)文件。网站,并生成收集到的黑市可疑网站的网址列表;应用程序静态分析模块,用于对收集到的APK文件进行反编译,以获取源代码,并检测该应用程序所在的网站的URL;网站分析模块,用于分析检测到的应用静态分析模块的URL或URL列表中的每个URL模式,以收集APK文件,并生成与APK文件收集路径有关的APK收集模式规则;数据库,用于存储收集到的黑市可疑网站的URL列表和生成的APK收集模式规则。本发明提供了一种黑市站点收集系统,该系统用于基于通过门户网站(例如Google)的研究结果来分析预期为黑市站点的URL或预期为黑市应用程序的APK文件。 Naver和Daum确定他们是否是黑市网站。本发明提出了一种基于搜索词来收集黑市站点的方法。通过黑市站点收集方法,黑市站点可以被连续收集以监视恶意软件应用是否被传播。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号