首页> 外国专利> METHOD FOR RELOADING OS THROUGH NETWORK ON ANALYSIS SYTEM OF MALICIOUS CODE BASED ON CULTURE

METHOD FOR RELOADING OS THROUGH NETWORK ON ANALYSIS SYTEM OF MALICIOUS CODE BASED ON CULTURE

机译:基于文化的恶意代码分析系统中通过网络重载操作系统的方法

摘要

The present invention relates to a culture-based system for analyzing malicious codes which infect culture agents, cultures and analyzes the malicious codes. The system comprises: an analysis managing server which stores operating system (OS) images of each culture analysis agent and transmits predetermined wakeup signals for booting to a relevant culture analysis agent every time any culture analysis agent is shut down; at least one culture analysis agent that downloads the OS image thereof from the analysis managing server, immediately recovers an OS infected by malicious code culture, and then cultures and analyzes new malicious code; and a router which limits a traffic bandwidth of a network to block malicious traffic, which can be released from the culture analysis agent to the outside. According to the present invention, a network and a host operation environment for safe culture and analysis of malicious codes are provided to construct the culture-based system for analyzing a malicious code which can cope with anti-virtual-machine malicious codes, inactive in a virtual-machine environment. The culture agent of which culture analysis has been finished downloads the OS image thereof stored in a remote host, quickly recovers the OS to be uninfected, and then can culture and analyze a new malicious code.
机译:基于文化的系统技术领域本发明涉及一种用于分析恶意代码的基于文化的系统,该恶意代码感染文化代理,对恶意代码进行培养和分析。该系统包括:分析管理服务器,其存储每个培养物分析代理的操作系统(OS)图像,并在每次关闭任何培养物分析代理时,将用于引导的预定唤醒信号发送到相关的培养物分析代理。至少一个文化分析代理,其从分析管理服务器下载操作系统镜像,并立即恢复被恶意代码文化感染的操作系统,然后对新的恶意代码进行文化分析。路由器限制网络的流量带宽以阻止恶意流量,该恶意流量可以从区域性分析代理释放到外部。根据本发明,提供了用于安全地进行文化和恶意代码分析的网络和主机操作环境,以构建基于文化的系统来分析恶意代码,该系统可以应对在计算机中不活动的反虚拟机恶意代码。虚拟机环境。完成文化分析的文化代理下载存储在远程主机中的OS映像,快速恢复要感染的OS,然后可以文化和分析新的恶意代码。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号