首页> 外国专利> ANDROID MALICIOUS APPLICATION PROGRAM DETECTION METHOD, SYSTEM AND DEVICE

ANDROID MALICIOUS APPLICATION PROGRAM DETECTION METHOD, SYSTEM AND DEVICE

机译:安卓恶意应用程序检测方法,系统和装置

摘要

Disclosed in an embodiment of the present invention are an Android malicious application program detection method, system and device, the detection method comprising: a server simulates the execution of an Android application program, matches the sensitive characteristic information of a system function invoked by the Android application program with the sensitive characteristic information stored in a sensitive data introduction rule base, and marks the variable of the successfully matched system function as sensitive data; the server matches the function containing the sensitive data with the malicious behavior characteristic information stored in a malicious behavior detection rule base, and marks the successfully matched function parameter as a malicious behavior. The technical solution in the embodiment of the present invention can detect an Android malicious application program without relying on human analysis of characteristic code, thus reducing the workload of technical personnel.
机译:本发明实施例公开了一种Android恶意应用程序的检测方法,系统和装置,该检测方法包括:服务器模拟Android应用程序的执行,匹配Android调用的系统功能的敏感特征信息。在敏感数据引入规则库中存储有敏感特征信息的应用程序,并将成功匹配的系统功能的变量标记为敏感数据;服务器将包含敏感数据的功能与存储在恶意行为检测规则库中的恶意行为特征信息进行匹配,并将匹配成功的功能参数标记为恶意行为。本发明实施例中的技术方案,无需依靠特征码的人为分析,就可以检测出Android恶意应用程序,从而减少了技术人员的工作量。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号