首页> 外国专利> INTRUSION DETECTION METHOD OF A MALICIOUS SOFTWARE USING A VIRTUAL MACHINE, PARTICULARLY FOR DIRECTLY EXECUTING A CURIOUS FILE IN A VIRTUAL MACHINE

INTRUSION DETECTION METHOD OF A MALICIOUS SOFTWARE USING A VIRTUAL MACHINE, PARTICULARLY FOR DIRECTLY EXECUTING A CURIOUS FILE IN A VIRTUAL MACHINE

机译:使用虚拟机的恶意软件的入侵检测方法,特别是在虚拟机中直接执行重要文件的方法

摘要

PURPOSE: An intrusion detection method of a malicious software using a virtual machine is provided to detect a malicious behavior by directly executing curious files in a virtual machine.;CONSTITUTION: A mail server(10) receives a mail to be transmitted to a receiver, and immediately transmits the mail to the receiver if there is not an attached file to the mail. If there is an attached file in the mail, the mail server transfers the attachment file to a VM(Virtual Machine) cluster(20). The mail server executes the attachment file in the VM cluster, and compares a system state image before and after the execution of the attachment file in the VM to detect a malicious code.;COPYRIGHT KIPO 2010
机译:目的:提供一种使用虚拟机的恶意软件入侵检测方法,以通过直接在虚拟机中执行好奇文件来检测恶意行为。组成:邮件服务器(10)接收要发送到接收方的邮件,并在没有附件的情况下立即将邮件发送给收件人。如果邮件中有附件,则邮件服务器将附件文件传输到VM(虚拟机)群集(20)。邮件服务器在VM群集中执行附件文件,并在VM中执行附件文件之前和之后比较系统状态映像以检测恶意代码。; COPYRIGHT KIPO 2010

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号