CN102902925A - 一种染毒文件的处理方法和系统 - Google Patents
一种染毒文件的处理方法和系统 Download PDFInfo
- Publication number
- CN102902925A CN102902925A CN2012103802433A CN201210380243A CN102902925A CN 102902925 A CN102902925 A CN 102902925A CN 2012103802433 A CN2012103802433 A CN 2012103802433A CN 201210380243 A CN201210380243 A CN 201210380243A CN 102902925 A CN102902925 A CN 102902925A
- Authority
- CN
- China
- Prior art keywords
- file
- processed
- temporary
- reading
- submodule
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000003672 processing method Methods 0.000 title abstract 2
- 238000000034 method Methods 0.000 claims abstract description 43
- 230000002155 anti-virotic effect Effects 0.000 claims abstract description 22
- 238000004140 cleaning Methods 0.000 claims abstract description 20
- 238000012544 monitoring process Methods 0.000 claims description 25
- 238000005192 partition Methods 0.000 claims description 22
- 238000012545 processing Methods 0.000 claims description 22
- 238000001514 detection method Methods 0.000 claims description 3
- 241000700605 Viruses Species 0.000 description 35
- 230000006870 function Effects 0.000 description 22
- 230000007246 mechanism Effects 0.000 description 6
- ZXQYGBMAQZUVMI-GCMPRSNUSA-N gamma-cyhalothrin Chemical compound CC1(C)[C@@H](\C=C(/Cl)C(F)(F)F)[C@H]1C(=O)O[C@H](C#N)C1=CC=CC(OC=2C=CC=CC=2)=C1 ZXQYGBMAQZUVMI-GCMPRSNUSA-N 0.000 description 4
- 238000004590 computer program Methods 0.000 description 3
- 230000003068 static effect Effects 0.000 description 3
- 238000010586 diagram Methods 0.000 description 2
- 230000009286 beneficial effect Effects 0.000 description 1
- 125000004122 cyclic group Chemical group 0.000 description 1
- 238000012217 deletion Methods 0.000 description 1
- 230000037430 deletion Effects 0.000 description 1
- 238000013461 design Methods 0.000 description 1
- 238000011161 development Methods 0.000 description 1
- 230000003362 replicative effect Effects 0.000 description 1
- 238000004659 sterilization and disinfection Methods 0.000 description 1
Images
Landscapes
- Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
Abstract
Description
Claims (18)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201210380243.3A CN102902925B (zh) | 2012-09-29 | 2012-09-29 | 一种染毒文件的处理方法和系统 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201210380243.3A CN102902925B (zh) | 2012-09-29 | 2012-09-29 | 一种染毒文件的处理方法和系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN102902925A true CN102902925A (zh) | 2013-01-30 |
CN102902925B CN102902925B (zh) | 2016-08-03 |
Family
ID=47575152
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201210380243.3A Active CN102902925B (zh) | 2012-09-29 | 2012-09-29 | 一种染毒文件的处理方法和系统 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN102902925B (zh) |
Cited By (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102930208A (zh) * | 2012-09-29 | 2013-02-13 | 北京奇虎科技有限公司 | 一种染毒文件的处理方法和系统 |
CN106326737A (zh) * | 2015-06-30 | 2017-01-11 | 卡巴斯基实验室股份制公司 | 用于检测可在虚拟堆栈机上执行的有害文件的系统和方法 |
CN104036192B (zh) * | 2014-07-04 | 2017-01-18 | 可牛网络技术(北京)有限公司 | 一种获取计算机程序调度表原始数据的方法及装置 |
CN109040137A (zh) * | 2018-10-10 | 2018-12-18 | 杭州安恒信息技术股份有限公司 | 用于检测中间人攻击的方法、装置以及电子设备 |
Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7210041B1 (en) * | 2001-04-30 | 2007-04-24 | Mcafee, Inc. | System and method for identifying a macro virus family using a macro virus definitions database |
CN101207627A (zh) * | 2007-12-13 | 2008-06-25 | 深圳市迅雷网络技术有限公司 | 一种过滤下载任务列表的客户端及方法 |
CN101286157A (zh) * | 2007-09-28 | 2008-10-15 | 深圳市天朗时代科技有限公司 | 一种文件检索方法及装置和时间流文件处理器 |
CN101634992A (zh) * | 2009-06-11 | 2010-01-27 | 上海交通大学 | Ntfs文件系统下轻量级文件加密及其解密恢复方法 |
CN101853363A (zh) * | 2010-05-07 | 2010-10-06 | 北京飞天诚信科技有限公司 | 一种文件保护方法及系统 |
CN101997832A (zh) * | 2009-08-10 | 2011-03-30 | 北京多思科技发展有限公司 | 一种支持安全监控的安全监控装置及方法 |
CN102419803A (zh) * | 2011-11-01 | 2012-04-18 | 成都市华为赛门铁克科技有限公司 | 计算机病毒查杀方法、系统及装置 |
CN102930208A (zh) * | 2012-09-29 | 2013-02-13 | 北京奇虎科技有限公司 | 一种染毒文件的处理方法和系统 |
-
2012
- 2012-09-29 CN CN201210380243.3A patent/CN102902925B/zh active Active
Patent Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7210041B1 (en) * | 2001-04-30 | 2007-04-24 | Mcafee, Inc. | System and method for identifying a macro virus family using a macro virus definitions database |
CN101286157A (zh) * | 2007-09-28 | 2008-10-15 | 深圳市天朗时代科技有限公司 | 一种文件检索方法及装置和时间流文件处理器 |
CN101207627A (zh) * | 2007-12-13 | 2008-06-25 | 深圳市迅雷网络技术有限公司 | 一种过滤下载任务列表的客户端及方法 |
CN101634992A (zh) * | 2009-06-11 | 2010-01-27 | 上海交通大学 | Ntfs文件系统下轻量级文件加密及其解密恢复方法 |
CN101997832A (zh) * | 2009-08-10 | 2011-03-30 | 北京多思科技发展有限公司 | 一种支持安全监控的安全监控装置及方法 |
CN101853363A (zh) * | 2010-05-07 | 2010-10-06 | 北京飞天诚信科技有限公司 | 一种文件保护方法及系统 |
CN102419803A (zh) * | 2011-11-01 | 2012-04-18 | 成都市华为赛门铁克科技有限公司 | 计算机病毒查杀方法、系统及装置 |
CN102930208A (zh) * | 2012-09-29 | 2013-02-13 | 北京奇虎科技有限公司 | 一种染毒文件的处理方法和系统 |
Cited By (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102930208A (zh) * | 2012-09-29 | 2013-02-13 | 北京奇虎科技有限公司 | 一种染毒文件的处理方法和系统 |
CN102930208B (zh) * | 2012-09-29 | 2015-11-25 | 北京奇虎科技有限公司 | 一种染毒文件的处理方法和系统 |
CN104036192B (zh) * | 2014-07-04 | 2017-01-18 | 可牛网络技术(北京)有限公司 | 一种获取计算机程序调度表原始数据的方法及装置 |
CN106326737A (zh) * | 2015-06-30 | 2017-01-11 | 卡巴斯基实验室股份制公司 | 用于检测可在虚拟堆栈机上执行的有害文件的系统和方法 |
CN106326737B (zh) * | 2015-06-30 | 2019-05-21 | 卡巴斯基实验室股份制公司 | 用于检测可在虚拟堆栈机上执行的有害文件的系统和方法 |
CN109040137A (zh) * | 2018-10-10 | 2018-12-18 | 杭州安恒信息技术股份有限公司 | 用于检测中间人攻击的方法、装置以及电子设备 |
CN109040137B (zh) * | 2018-10-10 | 2021-04-09 | 杭州安恒信息技术股份有限公司 | 用于检测中间人攻击的方法、装置以及电子设备 |
Also Published As
Publication number | Publication date |
---|---|
CN102902925B (zh) | 2016-08-03 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US7841006B2 (en) | Discovery of kernel rootkits by detecting hidden information | |
Carrier | Risks of live digital forensic analysis | |
US8572371B2 (en) | Discovery of kernel rootkits with memory scan | |
US8719935B2 (en) | Mitigating false positives in malware detection | |
US8495037B1 (en) | Efficient isolation of backup versions of data objects affected by malicious software | |
US20050262567A1 (en) | Systems and methods for computer security | |
US20090038011A1 (en) | System and method of identifying and removing malware on a computer system | |
IL267241B2 (en) | System and methods for identifying ransomware | |
US9819695B2 (en) | Scanning method and device, and client apparatus | |
AU2021319159B2 (en) | Advanced ransomware detection | |
WO2017084557A1 (zh) | 文件扫描方法及装置 | |
CN103473501A (zh) | 一种基于云安全的恶意软件追踪方法 | |
CN102902925B (zh) | 一种染毒文件的处理方法和系统 | |
US8448243B1 (en) | Systems and methods for detecting unknown malware in an executable file | |
TWI607338B (zh) | 儲存裝置及其資料保護方法與資料保護系統 | |
Butler et al. | Rootkit-resistant disks | |
Gionta et al. | Seer: practical memory virus scanning as a service | |
US8065730B1 (en) | Anti-malware scanning in a virtualized file system environment | |
Nagy et al. | Rootkit detection on embedded IoT devices | |
CN102929733B (zh) | 一种错误文件处理方法、装置和客户端设备 | |
EP2874090B1 (en) | Virus processing method and apparatus | |
CN102930208B (zh) | 一种染毒文件的处理方法和系统 | |
EP2729893B1 (en) | Security method and apparatus | |
US20240126882A1 (en) | Instructions to process files in virtual machines | |
WO2007123492A1 (en) | Method of safeguarding against malicious software (malware) |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
CP03 | Change of name, title or address | ||
CP03 | Change of name, title or address |
Address after: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park) Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd. Patentee after: Beijing Qizhi Business Consulting Co.,Ltd. Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park) Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd. Patentee before: Qizhi software (Beijing) Co.,Ltd. |
|
TR01 | Transfer of patent right | ||
TR01 | Transfer of patent right |
Effective date of registration: 20240113 Address after: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park) Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd. Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park) Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd. Patentee before: Beijing Qizhi Business Consulting Co.,Ltd. |