首页>
外国专利>
METHOD AND APPARATUS FOR DETERMINING BEHAVIOUR INFORMATION CORRESPONDING TO DANGEROUS FILE
METHOD AND APPARATUS FOR DETERMINING BEHAVIOUR INFORMATION CORRESPONDING TO DANGEROUS FILE
展开▼
机译:确定与危险文件相对应的行为信息的方法和装置
展开▼
页面导航
摘要
著录项
相似文献
摘要
A method for determining behaviour information corresponding to a dangerous file in a computer device. The method comprises: when a dangerous file is detected, running the dangerous file in a virtual environment of the computer device, wherein the virtual environment comprises at least one virtual API identical to at least one real API in a real environment of the computer device; and monitoring the behaviour of the dangerous file in the virtual environment to obtain behaviour information corresponding to the dangerous file. According to the method, the behaviour information about the dangerous file can be rapidly obtained in the virtual environment without needing to artificially analyse the destructive behaviour of the dangerous file, so as to rapidly and comprehensively repair a real system of the computer device.
展开▼