CN102664913A - Method and device for webpage access control - Google Patents

Method and device for webpage access control Download PDF

Info

Publication number
CN102664913A
CN102664913A CN2012100770746A CN201210077074A CN102664913A CN 102664913 A CN102664913 A CN 102664913A CN 2012100770746 A CN2012100770746 A CN 2012100770746A CN 201210077074 A CN201210077074 A CN 201210077074A CN 102664913 A CN102664913 A CN 102664913A
Authority
CN
China
Prior art keywords
chained address
incident
web page
page access
situation
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2012100770746A
Other languages
Chinese (zh)
Other versions
CN102664913B (en
Inventor
肖锐
肖鹏
向明
宁敢
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qizhi Business Consulting Co ltd
Beijing Qihoo Technology Co Ltd
360 Digital Security Technology Group Co Ltd
Original Assignee
Qizhi Software Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Qizhi Software Beijing Co Ltd filed Critical Qizhi Software Beijing Co Ltd
Priority to CN201210077074.6A priority Critical patent/CN102664913B/en
Publication of CN102664913A publication Critical patent/CN102664913A/en
Application granted granted Critical
Publication of CN102664913B publication Critical patent/CN102664913B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention discloses a method and a device for webpage access control. The method comprises obtaining the event generated by the operations of input device when webpage is being accessed, judging the obtained event and ascertaining link address corresponding to the object that the event is operating if the event is generated by webpage access, and prohibiting webpage access corresponding to the event if the link address complies with the filtering condition. The embodiment of the invention judges the link address corresponding to the obtained event and prohibits webpage access corresponding to the event when the link address complies with the filtering condition in order to enable analysis and determination of operation event from the bottom, thereby intercepting the access to malicious link prior to the event message being transferred to application layer of the terminal, improving interception reliability and security of network access for users.

Description

Web page access control method and device
Technical field
The present invention relates to computer realm, and especially, relate to a kind of web page access control method and device.
Background technology
At present, the user can conduct interviews through certain hyperlink in mouse even selected (for example, the using click) webpage of keyboard when accesses network.
But, there are a lot of malicious websites (hanging the horse fishing website) at present, these websites can provide a lot of malice links, in case the user clicks and gets into, will receive the attack of malicious websites, cause the terminal by poisoning intrusion.
In order to improve the fail safe of customer access network, proposed multiple hyperlink to be checked and the technology of disable access.These prior arts can be carried out legitimate verification to hyperlink when selected certain hyperlink of user conducts interviews, connect if this hyperlink is a malice, then point out and disable access.
Though prior art can be avoided the attack of malicious websites to a certain extent,, when the user carries out the selected operation of hyperlink through input equipments such as mouse, keyboards; The incident of these operations is obtained by the terminal; And be distributed to each application of terminal system with the mode of event message, at this moment, hyperlink checking and visit are forbidden but not beginning to carry out; But; A lot of viruses have in fact been invaded the system at terminal, and therefore, prior art can not realize safeguard protection truly.
Problem to the fail safe that can't effectively guarantee the customer access network link in the correlation technique does not propose effective solution at present as yet.
Summary of the invention
To the problem of the fail safe that can't effectively guarantee the customer access network link in the correlation technique, the present invention proposes a kind of web page access control method and device, can tackle the visit to the malice link more effectively, improves the fail safe of customer access network.
Technical scheme of the present invention is achieved in that
According to an aspect of the present invention, a kind of web page access control method is provided.
This method comprises:
Obtain input equipment and under the web page access situation, operate the incident that is produced;
Incident to obtaining is judged, is under the situation of web page access operation in the incident that judgement is obtained, and confirms the corresponding chained address of object that incident is operated;
Satisfy under the situation of filtercondition in the judgement chained address, forbid the web page access that the execution incident is corresponding.
Wherein, confirm that the corresponding chained address of object that incident is operated comprises:
Confirm the position of operation according to the parameter information of incident;
Whether the object according to the position judgment operation of confirming is hyperlink;
Object in decision operation is under the situation of hyperlink, confirms the chained address that object is corresponding.
In addition; The judgement chained address is satisfied filtercondition and is comprised: in the table of predetermined malice chained address, search; If being the chained address, lookup result is arranged under the situation of predetermined malice chained address table; Judge that the chained address satisfies filtercondition, wherein, malice chained address table is kept at the terminal at input equipment place or is kept in the server with terminal communication.
This method further comprises: satisfy under the situation of filtercondition in the judgement chained address, carry out alarm prompt to incident.
This method also further comprises: judging that the chained address do not satisfy under the situation of filtercondition, the event message of incident is distributed to the application of registration and the corresponding web page access of execution incident.
Wherein, input equipment comprise following one of at least: mouse, keyboard.
And, the operation that input equipment is carried out comprise following one of at least: click, keyboard is selected confirms.
According to a further aspect in the invention, a kind of web page access control device is provided.
This device comprises:
Acquisition module is used to obtain input equipment and under the web page access situation, operates the incident that is produced;
Judge module is used for the incident of obtaining is judged, judges whether the incident of obtaining is the web page access operation;
Determination module, the judged result that is used at judge module is under the situation that is, confirms the corresponding chained address of object that incident is operated;
Access control module is used to judge whether the chained address satisfies filtercondition, and satisfies under the situation of filtercondition in the judgement chained address, forbids the web page access that the execution incident is corresponding.
Whether wherein, determination module is used for confirming according to the parameter information of incident the position of operation, and be hyperlink according to the object of the position judgment operation of confirming, and is under the situation of hyperlink at the object of decision operation, confirms the chained address that object is corresponding.
And; Access control module is used for showing to search in predetermined malice chained address; If being the chained address, lookup result is arranged under the situation of predetermined malice chained address table; Judge that the chained address satisfies filtercondition, wherein, malice chained address table is kept at the terminal at input equipment place or is kept in the server with terminal communication.
The present invention is through judging the pairing chained address of the incident of obtaining; Satisfying under the situation of filtercondition; Forbid the web page access that the implementation incident is corresponding, can be to analyzing from the Action Events of bottom and judge, thus just will tackle be forwarded to the application layer at terminal at event message before the visit that malice links; Improved the reliability of interception, the fail safe that has improved customer access network.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art; To do to introduce simply to the accompanying drawing of required use among the embodiment below; Obviously, the accompanying drawing in describing below only is some embodiments of the present invention, for those of ordinary skills; Under the prerequisite of not paying creative work, can also obtain other accompanying drawing according to these accompanying drawings.
Fig. 1 is the flow chart according to the web page access control method of the embodiment of the invention;
Fig. 2 is the block diagram according to the web page access control device of the embodiment of the invention.
Embodiment
To combine the accompanying drawing in the embodiment of the invention below, the technical scheme in the embodiment of the invention is carried out clear, intactly description, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, the every other embodiment that those of ordinary skills obtained belongs to the scope that the present invention protects.
According to embodiments of the invention, a kind of web page access control method is provided.
As shown in Figure 1, comprise according to the web page access control method of the embodiment of the invention:
Step S101 obtains input equipment and under the web page access situation, operates the incident that is produced (at this moment, the terminal has only obtained the bottom incident of this operation; When getting access to this incident; The event information that can stop this incident is distributed in the application layer at terminal, that is, this operation can not come into force);
Step S103 judges the incident of obtaining, and is under the situation of web page access operation in the incident that judgement is obtained, and confirms the corresponding chained address of object that this incident is operated;
Step S105 satisfies under the situation of filtercondition in this chained address of judgement, forbids carrying out the corresponding web page access of this incident.
Wherein, thereby input equipment can be anyly on the terminal can receive the equipment that user instruction carries out web page access, for example, can be the mouse used always, keyboard etc.And the operation that input equipment is carried out can comprise any selected operation to hyperlink, for example, can be click, the selected affirmation of keyboard (hyperlink is pressed space or carriage return).
Particularly, when confirming the chained address of the object correspondence that this incident is operated, can confirm the position of operation according to the parameter information of incident; Afterwards, whether the object according to the position judgment operation of confirming is hyperlink (for example, can confirm whether this position exists hyperlink according to the position of the operation of confirming before, if exist, the object that then can judge this operation is a hyperlink); Object in decision operation is under the situation of hyperlink, confirms the chained address that this object is corresponding.
In practical application; The information that obtains to a certain Action Events can comprise a lot of contents; Outside the position (for example, the position of click screen) except operation, (for example can also comprise the corresponding window in the position of operation; Be under the browser window background, to click, the click of still under desktop background, carrying out).
In addition; When judging whether the chained address satisfies filtercondition; Can in the table of predetermined malice chained address, search (mate the chained address that will currently confirm to obtain and the predetermined malice chained address address in showing); Be arranged under the situation of predetermined malice chained address table if lookup result is the chained address, this then be described currently confirm that the chained address that obtains is the malice chained address, can judge that this chained address satisfies filtercondition.Wherein, malice chained address table comprises many address informations of prejudging to the malice link, and malice chained address table can be kept at the terminal at input equipment place; Also can be kept in the server with terminal communication; Its content can generate according to information such as report records, like this, is knowing under the situation that is operating as a selected hyperlink that input equipment is carried out; Will go inquiry in the table of malice chained address; Whether the address of confirming the hyperlink that this is selected is present in the table of malice chained address, if malice chained address table is kept in the terminal, then can carry out local search; If malice chained address table is kept at server end, will arrives this server and carry out remote inquiry (for example, can carry out the cloud inquiry).
Satisfy under the situation of filtercondition (this chained address is the malice chained address) when judging a chained address; The event message that not only can stop this accessing operation is distributed in the application layer at terminal; Also can carry out alarm prompt, and can be shown to the user being judged as the chained address of satisfying filtercondition to this incident.In addition, when alarming, can show the option that lets the user confirm whether to continue to visit this chained address,, then the event message of above-mentioned incident is distributed to the application of registration, that is, continue to carry out this web page access if the user still confirms to need to continue visit.
On the other hand, do not satisfy under the situation of filtercondition, the event message of this incident is distributed to the application of registration, and carry out the corresponding web page access of this incident in the judgement chained address.
No matter be that the user confirms to proceed web page access under the situation of alarm; Or this operation is not the operation (need not interception) of web page access; Or this operation is web page access operation and the chained address of visit is not the malice chained address, and the event message that all needs to operate is distributed.
For example, the transmission course of Action Events (for example, mouse click event) in system to webpage relates generally to inner nuclear layer (bottom) R0 and application layer R3.
In R0 and R3, the operation of execution mainly comprises following components:
(1) in R0, receive the variety of event of mouse hardware in the driving, notice R3 distributes, and the present invention then is not that direct notice R3 distributes, but the process that stops to distribute is analyzed the incident from bottom that is produced by web page access.
Operation in R3 is following:
KiUserCallbackDispatcher: this function finds the KernelCallbackTable system message distributing list of preserving in the current process PEB structure to navigate to distribution function corresponding in the table according to parameter I ndex; Msg is transmitted; For example, the corresponding KernelCallbackTable! of WH_MOUSE message _ fnHkINLPMOUSEHOOKSTRUCTEX;
_ fnHkINLPMOUSEHOOKSTRUCTEX: the mouse event of webpages such as responsible processing MH_MOUSE, enumerate chained list, unified dispatch messages;
(4) mouse information hook registration function: the mouse information hook is meant Action Events and application contacts, like this, just can event message be sent to corresponding application, possibly have a plurality of application (for example, application 1-N) in the terminal system;
(5) between message hook and COM, BHO aspect interception OnBeforeNavigate, and can intercept and capture the URL incident, for example, can tackle through HOOK;
(6) following 2 functions guarantee the BHO order first of oneself
IEFRAME!CConnectionPointEnum::Next
IEFRAME!CConnectionPoint::EnumConnections
(7) network filtering layer: intercept and capture download event through Inline Hook with minor function: recv/send/WASRecv/closesocket.
In practical application, on (1) part basis of tackling, can also tackle (for example, as stated, tackling) in (4) part through HOOK, and can be in (2), (3), (5) or (6) part carries out other interception.
KiUserCallbackDispatcher; Because this function is the processing function that the R3 aspect is received message the earliest; And wherein can handle the message such as WH_MOUSE, WH_DEBUG that produce owing to operation, so, if carry out interception that malice links and the forwarding that stops event message to this function; Can avoid visit as early as possible, improve fail safe the malice chained address; And when interception, can resolve the URL that obtains current click object through web technologies, with this URL of blocking way inquiry.If the download chain of malice then ejects alert box, inform that the user should link the risk that has visit, avoided the visit to the malice chained address at once.
When warning, can be by means of multiple mode, for example; Can alarm event message (representing that current needs carry out alarm prompt) be distributed to the application that can alarm; For example, fire compartment wall, antivirus software etc. are alarmed by the application of receiving this event message; The mode of alarm also not only is confined to eject alert box; In addition, can also adopt sound to combine to eject alert box or Pop-up message or sound and combine the mode of Pop-up message to point out, the application enumerates this no longer one by one.
According to embodiments of the invention, a kind of web page access control device is provided also.
As shown in Figure 2, web page access control device according to the present invention comprises:
Acquisition module 21 is used to obtain input equipment and under the web page access situation, operates the incident that is produced;
Judge module 22 is used for the incident of obtaining is judged, judges whether the incident of obtaining is the web page access operation;
Determination module 23, the judged result that is used at judge module 22 is under the situation that is, confirms the corresponding chained address of object that incident is operated;
Access control module 24 is used to judge whether the chained address satisfies filtercondition, and satisfies under the situation of filtercondition in the judgement chained address, forbids the web page access that the execution incident is corresponding.
Whether wherein, determination module 23 is used for confirming according to the parameter information of incident the position of operation, and be hyperlink according to the object of the position judgment operation of confirming, and is under the situation of hyperlink at the object of decision operation, confirms the chained address that object is corresponding.
And access control module 24 is used for showing to search in predetermined malice chained address, is arranged under the situation of predetermined malice chained address table if lookup result is the chained address, and filtercondition is satisfied in the judgement chained address.
In addition, access control module can also be carried out the normal access flow process of above-mentioned R3 part, no longer repeats here.
In sum, by means of technique scheme of the present invention, through the pairing chained address of the incident of obtaining is judged; Satisfying under the situation of filtercondition; Forbid the web page access that the implementation incident is corresponding, can be to analyzing from the Action Events of bottom and judge, thus just will tackle be forwarded to the application layer at terminal at event message before the visit that malice links; Improved the reliability of interception, the fail safe that has improved customer access network.
The above is merely preferred embodiment of the present invention, and is in order to restriction the present invention, not all within spirit of the present invention and principle, any modification of being done, is equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (10)

1. a web page access control method is characterized in that, comprising:
Obtain input equipment and under the web page access situation, operate the incident that is produced;
Said incident to obtaining is judged, is under the situation of web page access operation in the said incident that judgement is obtained, and confirms the corresponding chained address of object that said incident is operated;
Satisfy under the situation of filtercondition in the said chained address of judgement, forbid carrying out the corresponding web page access of said incident.
2. web page access control method according to claim 1 is characterized in that, confirms that the corresponding chained address of object that said incident is operated comprises:
Confirm the position of said operation according to the parameter information of said incident;
Whether the object according to the said operation of confirming of position judgment is hyperlink;
Object judging said operation is under the situation of hyperlink, confirms the chained address that said object is corresponding.
3. web page access control method according to claim 1 is characterized in that, judges that said chained address satisfies filtercondition and comprise:
In the table of predetermined malice chained address, search; If being said chained address, lookup result is arranged under the situation of said predetermined malice chained address table; Judge that said chained address satisfies filtercondition; Wherein, said malice chained address table is kept at the terminal at said input equipment place or is kept in the server with said terminal communication.
4. web page access control method according to claim 1 is characterized in that, further comprises:
Satisfy under the situation of filtercondition in the said chained address of judgement, carry out alarm prompt to said incident.
5. web page access control method according to claim 1 is characterized in that, further comprises:
Do not satisfy under the situation of said filtercondition in the said chained address of judgement, the event message of said incident is distributed to the application of registration, and carry out the corresponding web page access of said incident.
6. according to each described web page access control method in the claim 1 to 5, it is characterized in that, said input equipment comprise following one of at least: mouse, keyboard.
7. web page access control method according to claim 6 is characterized in that, the said operation that said input equipment is carried out comprise following one of at least: click, keyboard is selected confirms.
8. a web page access control device is characterized in that, comprising:
Acquisition module is used to obtain input equipment and under the web page access situation, operates the incident that is produced;
Judge module is used for the said incident of obtaining is judged, judges whether the said incident of obtaining is the web page access operation;
Determination module, the judged result that is used at judge module is under the situation that is, confirms the corresponding chained address of object that said incident is operated;
Access control module is used to judge whether said chained address satisfies filtercondition, and satisfies under the situation of said filtercondition in the said chained address of judgement, forbids carrying out the corresponding web page access of said incident.
9. web page access control device according to claim 8; It is characterized in that; Said determination module is used for confirming according to the parameter information of said incident the position of said operation; And whether be hyperlink according to the object of the said operation of confirming of position judgment, and be under the situation of hyperlink at the object of judging said operation, confirm the chained address that said object is corresponding.
10. web page access control device according to claim 8; It is characterized in that; Said access control module is used in predetermined malice chained address table to be searched, and is arranged under the situation of said predetermined malice chained address table if lookup result is said chained address, judges that said chained address satisfies filtercondition; Wherein, said malice chained address table is kept at the terminal at said input equipment place or is kept in the server with said terminal communication.
CN201210077074.6A 2012-03-21 2012-03-21 Method and device for webpage access control Active CN102664913B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210077074.6A CN102664913B (en) 2012-03-21 2012-03-21 Method and device for webpage access control

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210077074.6A CN102664913B (en) 2012-03-21 2012-03-21 Method and device for webpage access control

Publications (2)

Publication Number Publication Date
CN102664913A true CN102664913A (en) 2012-09-12
CN102664913B CN102664913B (en) 2015-04-15

Family

ID=46774322

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210077074.6A Active CN102664913B (en) 2012-03-21 2012-03-21 Method and device for webpage access control

Country Status (1)

Country Link
CN (1) CN102664913B (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103761482A (en) * 2014-01-23 2014-04-30 珠海市君天电子科技有限公司 Method for detecting virus program and virus program detecting device
CN104102743A (en) * 2014-07-31 2014-10-15 可牛网络技术(北京)有限公司 Method and device for filtering webpage advertisement
WO2017206251A1 (en) * 2016-05-30 2017-12-07 宇龙计算机通信科技(深圳)有限公司 Method and device for freezing application
CN108509184A (en) * 2018-03-28 2018-09-07 武汉斗鱼网络科技有限公司 Message distributing method, computer readable storage medium and electronic equipment
CN110262749A (en) * 2019-06-27 2019-09-20 北京思维造物信息科技股份有限公司 A kind of web page operation method, apparatus, container, equipment and medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1859398A (en) * 2006-01-05 2006-11-08 珠海金山软件股份有限公司 System and method for reverse network fishing
CN1949715A (en) * 2005-10-12 2007-04-18 腾讯科技(深圳)有限公司 Method for limiting browser access network address
US20080263650A1 (en) * 2007-04-23 2008-10-23 Sap Ag Enhanced cross-site attack prevention

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1949715A (en) * 2005-10-12 2007-04-18 腾讯科技(深圳)有限公司 Method for limiting browser access network address
CN1859398A (en) * 2006-01-05 2006-11-08 珠海金山软件股份有限公司 System and method for reverse network fishing
US20080263650A1 (en) * 2007-04-23 2008-10-23 Sap Ag Enhanced cross-site attack prevention

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103761482A (en) * 2014-01-23 2014-04-30 珠海市君天电子科技有限公司 Method for detecting virus program and virus program detecting device
CN104102743A (en) * 2014-07-31 2014-10-15 可牛网络技术(北京)有限公司 Method and device for filtering webpage advertisement
CN104102743B (en) * 2014-07-31 2017-11-03 可牛网络技术(北京)有限公司 A kind of method and device of filtering web page advertisement
WO2017206251A1 (en) * 2016-05-30 2017-12-07 宇龙计算机通信科技(深圳)有限公司 Method and device for freezing application
CN108509184A (en) * 2018-03-28 2018-09-07 武汉斗鱼网络科技有限公司 Message distributing method, computer readable storage medium and electronic equipment
CN108509184B (en) * 2018-03-28 2021-11-09 武汉斗鱼网络科技有限公司 Message distribution method, computer-readable storage medium and electronic device
CN110262749A (en) * 2019-06-27 2019-09-20 北京思维造物信息科技股份有限公司 A kind of web page operation method, apparatus, container, equipment and medium

Also Published As

Publication number Publication date
CN102664913B (en) 2015-04-15

Similar Documents

Publication Publication Date Title
CN113661693B (en) Detecting sensitive data exposure via log
US20190207967A1 (en) Platform and method for retroactive reclassification employing a cybersecurity-based global data store
US20190207966A1 (en) Platform and Method for Enhanced Cyber-Attack Detection and Response Employing a Global Data Store
US9791998B2 (en) System, method, and computer program product for managing a plurality of applications via a single interface
RU2622870C2 (en) System and method for evaluating malicious websites
US10133866B1 (en) System and method for triggering analysis of an object for malware in response to modification of that object
US9817969B2 (en) Device for detecting cyber attack based on event analysis and method thereof
KR101689298B1 (en) Automated verification method of security event and automated verification apparatus of security event
US11240275B1 (en) Platform and method for performing cybersecurity analyses employing an intelligence hub with a modular architecture
US8707441B1 (en) Techniques for identifying optimized malicious search engine results
JP2019067398A (en) Automated reduction in electronic mail-based security threat
US20100325685A1 (en) Security Integration System and Device
US11960604B2 (en) Online assets continuous monitoring and protection
US20150317477A1 (en) System For Automatically Collecting and Analyzing Crash Dumps
CN103384888A (en) Systems and methods for malware detection and scanning
CN102171657A (en) Simplified communication of a reputation score for an entity
US11856011B1 (en) Multi-vector malware detection data sharing system for improved detection
US11184379B1 (en) File scanner to detect malicious electronic files
CN102664913B (en) Method and device for webpage access control
KR101068931B1 (en) Web Shell Monitoring System and Method based on Pattern Detection
CN109587122A (en) Realize that self ensures the system and method for Web subsystem safety based on WAF system function
CN115086064A (en) Large-scale network security defense system based on cooperative intrusion detection
Canfora et al. A set of features to detect web security threats
JP2006295232A (en) Security monitoring apparatus, and security monitoring method and program
JP2005157650A (en) Illegal access detecting system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
ASS Succession or assignment of patent right

Owner name: QIZHI SOFTWARE (BEIJING) CO., LTD.

Effective date: 20120913

Owner name: BEIJING QIHU TECHNOLOGY CO., LTD.

Free format text: FORMER OWNER: QIZHI SOFTWARE (BEIJING) CO., LTD.

Effective date: 20120913

C41 Transfer of patent application or patent right or utility model
COR Change of bibliographic data

Free format text: CORRECT: ADDRESS; FROM: 100025 CHAOYANG, BEIJING TO: 100088 XICHENG, BEIJING

TA01 Transfer of patent application right

Effective date of registration: 20120913

Address after: 100088 Beijing city Xicheng District xinjiekouwai Street 28, block D room 112 (Desheng Park)

Applicant after: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Applicant after: Qizhi software (Beijing) Co.,Ltd.

Address before: The 4 layer 100025 unit of Beijing city Chaoyang District Jiuxianqiao Road No. 14 Building C

Applicant before: Qizhi software (Beijing) Co.,Ltd.

C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP01 Change in the name or title of a patent holder
CP01 Change in the name or title of a patent holder

Address after: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee after: Beijing Qizhi Business Consulting Co.,Ltd.

Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee before: Qizhi software (Beijing) Co.,Ltd.

TR01 Transfer of patent right

Effective date of registration: 20220322

Address after: 100016 1773, 15 / F, 17 / F, building 3, No.10, Jiuxianqiao Road, Chaoyang District, Beijing

Patentee after: Sanliu0 Digital Security Technology Group Co.,Ltd.

Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee before: Beijing Qizhi Business Consulting Co.,Ltd.

TR01 Transfer of patent right