首页> 外国专利> Malicious code prevention apparatus and method using level classification of suspicious behavior and isolated execution, and computer-readable medium storing program for method thereof

Malicious code prevention apparatus and method using level classification of suspicious behavior and isolated execution, and computer-readable medium storing program for method thereof

机译:使用可疑行为的级别分类和隔离执行的恶意代码预防装置和方法,以及用于该方法的计算机可读介质存储程序

摘要

PURPOSE: A malicious code prevention apparatus using level classification of suspicious behavior and isolated execution, a method thereof and a computer-readable medium storing program for the method thereof are provided to protect a system in safety by allowing a computer-readable recording medium to process doubtful behavior. CONSTITUTION: A behavior monitoring unit(110) monitors the behavior that a program is performed in a system. Based on the characteristics of a malicious code and a normal code, a behavior classifying unit(120) classifies the behavior according to the level. A separation execution unit(140) performs the behavior so that the corresponding behavior may be separated from the system. The behavior is mainly used for the malicious code as the level classification result. In addition, the behavior is sometimes used for a normal code.
机译:目的:提供一种使用可疑行为的等级分类和隔离执行的恶意代码预防设备,其方法以及用于该方法的计算机可读介质存储程序,以通过允许计算机可读记录介质进行处理来保护系统安全可疑行为。构成:行为监视单元(110)监视在系统中执行程序的行为。行为分类单元(120)基于恶意代码和正常代码的特征,根据等级对行为进行分类。分离执行单元(140)执行该行为,使得相应的行为可以与系统分离。该行为主要用于恶意代码作为级别分类结果。此外,该行为有时用于普通代码。

著录项

  • 公开/公告号KR101031786B1

    专利类型

  • 公开/公告日2011-04-29

    原文格式PDF

  • 申请/专利权人

    申请/专利号KR20090008410

  • 发明设计人 황용석;김광태;

    申请日2009-02-03

  • 分类号G06F21;G06F15/16;G06F11/30;G06F17/30;

  • 国家 KR

  • 入库时间 2022-08-21 17:50:21

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号