CN102917334B - A kind of violation terminal built-in behavior processing method, apparatus and system - Google Patents

A kind of violation terminal built-in behavior processing method, apparatus and system Download PDF

Info

Publication number
CN102917334B
CN102917334B CN201110218380.2A CN201110218380A CN102917334B CN 102917334 B CN102917334 B CN 102917334B CN 201110218380 A CN201110218380 A CN 201110218380A CN 102917334 B CN102917334 B CN 102917334B
Authority
CN
China
Prior art keywords
user
service
abnormal
group
secondary confirmation
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201110218380.2A
Other languages
Chinese (zh)
Other versions
CN102917334A (en
Inventor
胡铁
胡云
杨刚
张磊
水波
王珂
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Group Beijing Co Ltd
Aspire Digital Technologies Shenzhen Co Ltd
Original Assignee
China Mobile Group Beijing Co Ltd
Aspire Digital Technologies Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Group Beijing Co Ltd, Aspire Digital Technologies Shenzhen Co Ltd filed Critical China Mobile Group Beijing Co Ltd
Priority to CN201110218380.2A priority Critical patent/CN102917334B/en
Publication of CN102917334A publication Critical patent/CN102917334A/en
Application granted granted Critical
Publication of CN102917334B publication Critical patent/CN102917334B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Telephonic Communication Services (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

本发明实施例公开了一种违规终端内置行为处理方法、装置及系统,所述方法包括采集业务管理平台全部用户的行为日志数据;抽取用户上行使用业务的日志数据;按用户终端号码计算每日该用户终端号码每次上行的频次,并判断频次是否在预先设定的数值范围内,如是,则计1次频次异常;判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;对异常用户点播SP业务的操作进行用户鉴权控制。本发明装置和系统用于实现所述方法。采用本发明,可准确的发现违规终端内置行为并有效地遏制这种行为,减少了终端违规吸费的情况,保障用户利益免受侵害。

The embodiment of the present invention discloses a method, device and system for processing built-in behaviors of illegal terminals. The method includes collecting behavior log data of all users on the service management platform; extracting log data of users' uplink services; The frequency of each uplink of the user terminal number, and judge whether the frequency is within the preset value range, if so, count 1 abnormal frequency; judge whether the frequency abnormal frequency of the user terminal number in a certain period exceeds the set number , if yes, it is judged as an abnormal user; user authentication control is performed on the operation of ordering SP services by the abnormal user. The devices and systems of the present invention are used to implement the method. By adopting the present invention, the built-in behavior of the illegal terminal can be accurately discovered and effectively curbed, thereby reducing the situation of terminal illegal charging and protecting the interests of users from being infringed.

Description

一种违规终端内置行为处理方法、装置及系统A method, device, and system for processing built-in behavior of illegal terminals

技术领域technical field

本发明涉及通信技术领域,尤其涉及一种违规终端内置行为处理方法、装置及系统。The present invention relates to the field of communication technology, in particular to a method, device and system for processing built-in behaviors of illegal terminals.

背景技术Background technique

随着使用山寨机的用户群体日益增加,部分服务提供商联同解决方案商、手机生产商,在山寨机内违规内置SP(服务提供者,Service Provider)业务,在用户不知情的情况下触发内违规内置SP业务扣费,这就是所谓“山寨机吸费陷阱”。此类终端(山寨机)违规内置行为引发了用户大量的投诉,部分用户为了避免被吸费甚至要求关闭移动信息服务开关,严重了影响了正常业务的推广。目前,终端(山寨机)违规内置行为方式很多,常见的违规内置方式包括有:内置菜单方式,当用户点击山寨机的内置菜单,即触发业务订购或者业务使用;内置后门程序方式,后门软件随机或者根据用户按键触发业务订购或业务使用;内置游戏软件方式,山寨机用户在玩手机内置游戏过程中,需要进入下一关的时候,按“确定”即触发业务订购或业务使用;应用软件方式,用户下载的应用软件(比如手机主题)中,暗藏吸费陷阱,自动触发业务订购或业务使用。With the increasing number of users using counterfeit mobile phones, some service providers, together with solution providers and mobile phone manufacturers, illegally built SP (Service Provider, Service Provider) services in counterfeit mobile phones, triggering Internal illegal built-in SP business deduction, this is the so-called "fake phone trap". The illegal built-in behavior of such terminals (cottage phones) has caused a large number of complaints from users. Some users even asked to turn off the mobile information service switch in order to avoid being charged, which seriously affected the promotion of normal business. At present, there are many illegal built-in behaviors of terminals (counterfeit phones). The common illegal built-in methods include: built-in menu method, when the user clicks on the built-in menu of the copycat phone, it triggers business order or business use; built-in backdoor program method, the backdoor software randomly Or trigger service ordering or service use according to the user's keystrokes; the built-in game software method, when the counterfeit mobile phone user needs to enter the next level during the process of playing the mobile phone's built-in game, press "OK" to trigger service ordering or service use; application software method , In the application software downloaded by the user (such as the theme of the mobile phone), there is a hidden trap of attracting fees, which automatically triggers service subscription or service use.

针对违规终端内置行为,目前在稽核手段上,主要有山寨机拨测、用户投诉查证两种。山寨机拨测,针对山寨机中的违规内置业务行为进行主动拨测,发现存在模拟用户订购、无资费提醒、菜单内容低俗、扣费未提供业务内容等问题,从而判断出终端嫌疑存在违规内置行为的异常用户和异常SP业务。其缺点是:机型覆盖范围有限,只能发现部分山寨机违规行为;山寨机厂商已经实现按批次选择性内置,因此拨测结果存在不准确性。用户投诉查证,则是根据用户投诉通过人工的方式提取用户使用业务日志数据进行分析,判定投诉内容的真实性和确定被投诉的业务是否违规。其缺点是:属于被动处理,无法有效降低用户投诉率;同时,作为业务违规的依据不足,存在取证困难的情况。Regarding the built-in behavior of illegal terminals, the current audit methods mainly include counterfeit phone dial-up testing and user complaint verification. Counterfeit phone dial-up test, active dial-up test for illegal built-in business behaviors in counterfeit phones, and found problems such as simulated user ordering, no tariff reminder, vulgar menu content, deduction of fees without providing business content, etc., thus judging that the terminal suspected of having illegal built-in Behavior of abnormal users and abnormal SP services. Its disadvantages are: the coverage of models is limited, and only some counterfeit machine violations can be found; counterfeit machine manufacturers have implemented selective built-in by batch, so the dial test results are inaccurate. The verification of user complaints is to manually extract user service log data for analysis based on user complaints, to determine the authenticity of the complaint content and determine whether the complained business violates regulations. Its disadvantages are: it is a passive process, which cannot effectively reduce the user complaint rate; at the same time, there is insufficient evidence as a business violation, and it is difficult to obtain evidence.

发明内容Contents of the invention

本发明实施例所解决的技术问题在于,提供一种违规终端内置行为处理方法、装置及系统,可主动、有效地发现违规终端内置行为并进行处理,减少终端违规吸费的情况,降低用户对违规终端内置行为吸费的投诉率,保障用户利益免受侵害。The technical problem solved by the embodiments of the present invention is to provide a method, device, and system for processing illegal terminal built-in behaviors, which can actively and effectively discover and process illegal terminal built-in behaviors, reduce the situation of terminal illegal fees, and reduce users’ concerns about The complaint rate of the built-in behavior of the illegal terminal to protect the interests of users from infringement.

为了实现上述目的,本发明实施例提供了一种违规终端内置行为处理方法,包括:In order to achieve the above purpose, an embodiment of the present invention provides a method for processing built-in behaviors of illegal terminals, including:

采集业务管理平台全部用户的行为日志数据;Collect behavior log data of all users of the business management platform;

抽取所述用户上行使用业务的日志数据;Extracting the log data of the user's uplink service;

按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常;Calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within the preset value range, and if so, count 1 frequency abnormality;

判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;Judging whether the abnormal frequency of the user terminal number in a certain period exceeds the set number, if so, it is judged as an abnormal user;

对所述异常用户点播SP业务的操作进行用户鉴权控制。User authentication control is performed on the abnormal user's operation of ordering SP services.

进一步的,对所述异常用户点播SP业务的操作进行用户鉴权控制的步骤包括:Further, the step of performing user authentication control on the operation of the abnormal user ordering SP service includes:

对所述异常用户进行用户群组鉴权,确定其所属的用户群组;Performing user group authentication on the abnormal user, and determining the user group to which it belongs;

采用确定的用户群组所对应的用户群组二次确认策略对所述异常用户点播的SP业务进行鉴权控制。The user group secondary confirmation policy corresponding to the determined user group is used to perform authentication control on the SP service ordered by the abnormal user.

进一步的,对所述异常用户进行用户群组鉴权,确定其所属的用户群组的步骤,具体包括:Further, the step of performing user group authentication on the abnormal user and determining the user group it belongs to specifically includes:

根据所述异常用户对违规收费的投诉量或者投诉频率,确定所述异常用户所属的用户群组。The user group to which the abnormal user belongs is determined according to the amount or frequency of complaints of the abnormal user about the illegal charges.

进一步的,所述用户群组包括高敏感度用户群组和低敏感度用户群组,其中,对违规收费的投诉量或者投诉频率达到第一设定数目条件的用户属于高敏感度用户群组,对违规收费的投诉量或者投诉频率达到第二设定数目条件的用户属于低敏感度用户群组。Further, the user group includes a high-sensitivity user group and a low-sensitivity user group, wherein users whose complaint volume or frequency of complaints about illegal charges reaches a first set number belong to the high-sensitivity user group , users whose complaint volume or frequency of complaints about illegal charges reaches a second set number condition belong to the low-sensitivity user group.

进一步的,所述高敏感度用户群组设定的对应用户群组二次确认策略为:随机码二次确认或者复杂问题二次确认;Further, the corresponding user group secondary confirmation strategy set by the high-sensitivity user group is: secondary confirmation of random code or secondary confirmation of complex questions;

所述低敏感度用户群组设定的对应用户群组二次确认策略为:简单问题二次确认。The corresponding user group secondary confirmation policy set by the low-sensitivity user group is: simple question secondary confirmation.

相应的,本发明实施例还提供了另外一种违规终端内置行为处理方法,包括:Correspondingly, the embodiment of the present invention also provides another method for processing built-in behaviors of violating terminals, including:

采集业务管理平台全部用户的行为日志数据;Collect behavior log data of all users of the business management platform;

抽取所述用户上行使用业务的日志数据;Extracting the log data of the user's uplink service;

按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常;Calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within the preset value range, and if so, count 1 frequency abnormality;

判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;Judging whether the abnormal frequency of the user terminal number in a certain period exceeds the set number, if so, it is judged as an abnormal user;

抽取所述异常用户在一定周期内成功上行的访问的SP业务列表;Extracting the SP service list of the abnormal user's successful uplink access within a certain period;

按所述业务列表中的业务统计相应的成功上行指标;According to the business statistics in the business list, the corresponding successful uplink indicators are counted;

判断所述成功上行指标是否超过设定数目,如是,则判定该业务为异常SP业务;Judging whether the successful uplink index exceeds the set number, if so, then judging that the service is an abnormal SP service;

对用户点播所述异常SP业务的操作进行业务鉴权控制。Perform service authentication control on the user's ordering operation of the abnormal SP service.

进一步的,所述成功上行指标包括异常用户数、异常用户成功上行数以及异常用户成功上行占比中的任意一种或多种。Further, the successful uplink indicator includes any one or more of the number of abnormal users, the number of successful uplinks by abnormal users, and the proportion of successful uplinks by abnormal users.

进一步的,对用户点播所述异常SP业务的操作进行业务鉴权控制的步骤包括:Further, the step of performing service authentication control on the operation of the user ordering the abnormal SP service includes:

对所述异常SP业务进行业务群组鉴权,确定其所属业务群组;Perform service group authentication on the abnormal SP service, and determine the service group to which it belongs;

采用确定的业务群组所对应的业务群组二次确认策略对所述SP业务进行鉴权控制。The authentication control of the SP service is performed by using the service group secondary confirmation policy corresponding to the determined service group.

进一步的,如果是异常SP业务,则对所述SP业务进行业务群组鉴权,确定其所属业务群组的步骤,具体包括:Further, if it is an abnormal SP business, the step of performing business group authentication on the SP business to determine the business group it belongs to specifically includes:

根据所述异常SP业务违规严重程度的不同,确定所述SP异常业务所属的业务群组。Determine the service group to which the SP abnormal service belongs according to the severity of violations of the abnormal SP service.

进一步的,所述业务群组包括高违规度业务群组、中违规度业务群组以及低违规度业务群组,其中,出现频次异常次数达到第三设定数目条件的SP业务属于高违规度业务群组,出现频次异常次数达到第四设定数目条件的SP业务属于中违规度业务群组,出现频次异常次数达到第五设定数目条件的SP业务属于低违规度业务群组。Further, the business group includes a high-violation business group, a medium-violation business group, and a low-violation business group, wherein, the SP business whose occurrence frequency abnormality reaches the third set number condition belongs to the high-violation degree For the business group, the SP business whose occurrence frequency of abnormal frequency reaches the fourth set number condition belongs to the medium violation degree business group, and the SP business whose occurrence frequency abnormality frequency reaches the fifth set number condition belongs to the low violation degree business group.

进一步的,所述高违规度业务群组设定的对应业务群组二次确认策略为:二次确认规则为每次点播均二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认;Further, the secondary confirmation policy of the corresponding business group set by the high-violation business group is: the secondary confirmation rule is a secondary confirmation for each order, and the secondary confirmation mode is a secondary confirmation of complex issues or a random code Second confirmation;

所述中违规度业务群组设定的对应业务群组二次确认策略为:二次确认规则为首次点播二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认;The secondary confirmation strategy of the corresponding business group set by the business group with a medium degree of violation is: the secondary confirmation rule is the secondary confirmation of the first on-demand broadcast, and the secondary confirmation mode is the secondary confirmation of complex issues or the secondary confirmation of random codes;

所述低违规度业务群组设定的对应业务群组二次确认策略为:二次确认规则为首次点播二次确认,二次确认模式为简单问题二次确认。The corresponding business group secondary confirmation strategy set by the low-violation business group is: the secondary confirmation rule is the secondary confirmation of the first on-demand broadcast, and the secondary confirmation mode is the secondary confirmation of simple questions.

相应的,本发明还提供了一种违规终端内置行为处理装置,包括:Correspondingly, the present invention also provides a built-in behavior processing device for illegal terminals, including:

采集单元,用于采集业务管理平台全部用户的行为日志数据;The collection unit is used to collect behavior log data of all users of the business management platform;

第一抽取单元,用于抽取所述用户上行使用业务的日志数据;The first extraction unit is used to extract the log data of the user's uplink service;

第一统计单元,用于按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常;The first statistical unit is used to calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within a preset numerical range, and if so, count 1 frequency abnormality;

第一判断单元,用于判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;The first judging unit is used to judge whether the abnormal frequency of the user terminal number in a certain period exceeds the set number, and if so, it is judged as an abnormal user;

用户鉴权控制单元,用于对所述异常用户点播SP业务的操作进行用户鉴权控制。A user authentication control unit, configured to perform user authentication control on the abnormal user's operation of ordering SP services.

进一步的,所述用户鉴权控制单元进一步包括:Further, the user authentication control unit further includes:

第一确定单元,用于对所述用户进行用户群组鉴权,确定其所属的用户群组;The first determining unit is configured to perform user group authentication on the user, and determine the user group to which the user belongs;

第一控制单元,用于采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权控制。The first control unit is configured to use the user group secondary confirmation policy corresponding to the determined user group to perform authentication control on the SP service ordered by the user.

进一步的,所述装置还包括:Further, the device also includes:

第二抽取单元,用于抽取所述异常用户在一定周期内成功上行的访问的SP业务列表;The second extraction unit is used to extract the SP service list of the abnormal user's successful uplink access within a certain period;

第二统计单元,用于按所述业务列表中的业务统计相应的成功上行指标;The second statistical unit is used to count the corresponding successful uplink indicators according to the services in the service list;

第二判断单元,用于判断所述成功上行指标是否超过设定数目,如是,则判定为异常SP业务;The second judging unit is used to judge whether the successful uplink index exceeds the set number, and if so, it is judged as an abnormal SP service;

业务鉴权控制单元,用于对用户点播所述异常SP业务的操作进行业务鉴权控制。A service authentication control unit, configured to perform service authentication control on the user's ordering operation of the abnormal SP service.

进一步的,所述业务鉴权控制单元进一步包括:Further, the service authentication control unit further includes:

第二确定单元,用于对所述异常SP业务进行业务群组鉴权,确定其所属的业务群组;The second determining unit is configured to perform service group authentication on the abnormal SP service, and determine the service group to which it belongs;

第二控制单元,用于采用确定的业务群组所对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权控制。The second control unit is configured to perform authentication control on the SP service ordered by the user by adopting the service group secondary confirmation policy corresponding to the determined service group.

相应的,本发明还提供了一种违规终端内置行为处理系统,所述系统包括稽核系统和业务管理平台;Correspondingly, the present invention also provides a built-in behavior processing system for illegal terminals, the system includes an audit system and a business management platform;

所述稽核系统用于稽核业务管理平台上终端嫌疑存在违规内置行为的异常用户和异常SP业务,并根据预设条件,将所述异常用户和异常SP业务分为不同的用户群组和业务群组,并针对不同的用户群组和业务群组设定不同的用户群组二次确认策略和业务群组二次确认策略;The audit system is used to audit abnormal users and abnormal SP services suspected of having illegal built-in behaviors on the business management platform, and divide the abnormal users and abnormal SP services into different user groups and business groups according to preset conditions Group, and set different user group secondary confirmation policies and business group secondary confirmation policies for different user groups and business groups;

所述业务管理平台用于在收到用户点播的SP业务请求后,判断所述用户为异常用户时,进行用户群组鉴权,然后采用相应的用户群组二次确认策略对用户点播的SP业务进行鉴权控制;或者收到用户点播的SP业务请求后,判断所述用户不是异常用户,再判断所述点播的SP业务是异常SP业务时,进行业务群组鉴权,然后采用相应的业务群组二次确认策略对用户点播的SP业务进行鉴权控制。The service management platform is used to perform user group authentication when judging that the user is an abnormal user after receiving the SP service request requested by the user, and then adopts the corresponding user group secondary confirmation strategy to check the SP service request requested by the user. After receiving the SP service request ordered by the user, it is judged that the user is not an abnormal user, and then when it is judged that the SP service requested by the user is an abnormal SP service, the service group authentication is performed, and then the corresponding The secondary confirmation policy of the service group performs authentication control on the SP service requested by the user.

进一步的,所述稽核系统包括:Further, the audit system includes:

采集单元,用于采集业务管理平台用户的行为日志数据;The collection unit is used to collect behavior log data of users of the business management platform;

抽取单元,用于抽取用户上行使用业务的日志数据;The extraction unit is used to extract the log data of the user's uplink service;

统计分析单元,用于按用户终端号码分别统计其每日频次异常的次数,确定异常用户,并按照预设条件,将其列入不同的用户群组;以及将所述异常用户的上行使用业务的日志数据,按照SP业务分别统计其成功上行指标,确定异常SP业务,并按照预设条件,将所述异常SP业务列入不同的业务群组;The statistical analysis unit is used to count the number of abnormal daily frequencies according to the user terminal numbers, determine the abnormal users, and list them into different user groups according to preset conditions; According to the log data of the SP business, the successful uplink indicators are counted respectively, the abnormal SP business is determined, and the abnormal SP business is listed in different business groups according to the preset conditions;

配置单元,用于针对不同的用户群组和业务群组设定不同的用户群组二次确认策略和业务群组二次确认策略。The configuration unit is used for setting different user group secondary confirmation policies and service group secondary confirmation policies for different user groups and service groups.

进一步的,所述业务管理平台包括:Further, the business management platform includes:

用户鉴权模块,用于判断点播SP业务的用户是否为异常用户,如是异常用户,则判断其所属的用户群组,并采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权;The user authentication module is used to judge whether the user of the on-demand SP service is an abnormal user, and if it is an abnormal user, then judge the user group it belongs to, and adopt the user group secondary confirmation strategy corresponding to the determined user group to verify all user groups. authenticate the SP service requested by the user;

业务鉴权模块,用于判断用户点播的SP业务是否为异常SP业务,如是异常SP业务,则进一步判断其所属的业务群组,并采用确定的业务群组所对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权。The service authentication module is used to judge whether the SP service ordered by the user is an abnormal SP service, and if it is an abnormal SP service, further judge the service group it belongs to, and use the service group corresponding to the determined service group for secondary confirmation The policy authenticates the SP service ordered by the user.

进一步的,所述用户鉴权模块包括:Further, the user authentication module includes:

判断单元,用于判断点播SP业务的用户是否为异常用户;Judging unit, for judging whether the user of the SP service on demand is an abnormal user;

查找单元,用于查找所述判断单元判定的异常用户所属的用户群组;a search unit, configured to search for the user group to which the abnormal user determined by the determination unit belongs;

鉴权单元,用于采用所述查找单元查找到的用户群组对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权。The authentication unit is configured to use the user group secondary confirmation policy corresponding to the user group found by the search unit to authenticate the SP service ordered by the user.

进一步的,所述业务鉴权模块包括:Further, the service authentication module includes:

判断单元,用于判断用户点播的SP业务的是否为异常SP业务;Judging unit, for judging whether the SP service requested by the user is an abnormal SP service;

查找单元,用于查找所述判断单元判定的异常业务所属的业务群组;a search unit, configured to search for the service group to which the abnormal service determined by the determination unit belongs;

鉴权单元,用于采用所述查找单元查找到的业务群组对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权。The authentication unit is configured to use the service group secondary confirmation policy corresponding to the service group found by the search unit to authenticate the SP service ordered by the user.

进一步的,所述业务管理平台针对不同的用户群组二次确认策略和业务群组二次确认策略,设有不同的题库,包括随机码题库,复杂问题题库以及简单问题题库,所述题库也可以由稽核系统提供给所述业务管理平台。Further, the business management platform has different question banks for different user group secondary confirmation strategies and business group secondary confirmation strategies, including random code question banks, complex question question banks and simple question question banks. It can be provided to the business management platform by the audit system.

实施本发明实施例,具有如下有益效果:Implementing the embodiment of the present invention has the following beneficial effects:

1、通过稽核判断,统计分析用户上行使用业务的日志数据,能够更加准确的发现终端嫌疑存在违规内置行为的异常用户和异常SP业务,进而对其进行分组,针对不同群组设置不同控制策略,实现精细化管理。1. Through audit and judgment, statistical analysis of log data of users' uplink services can more accurately discover abnormal users and abnormal SP services suspected of having illegal built-in behaviors in the terminal, and then group them, and set different control strategies for different groups. Realize refined management.

2、针对不同的用户群组和业务群组,采用不同的二次确认控制策略,能够实现有针对性的管理操作,使终端违规内置不能轻易的替用户完成二次确认,更加有效的减少终端违规吸费的情况,降低用户对违规吸费的投诉量,保障用户利益免受侵害。2. For different user groups and business groups, different secondary confirmation control strategies can be used to achieve targeted management operations, so that the built-in terminal violations cannot easily complete the secondary confirmation for users, and more effectively reduce the number of terminals In the case of illegal fees, reduce the number of complaints from users about illegal fees, and protect the interests of users from infringement.

附图说明Description of drawings

为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本发明的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动性的前提下,还可以根据这些附图获得其他的附图。In order to more clearly illustrate the technical solutions in the embodiments of the present invention or the prior art, the following will briefly introduce the drawings that need to be used in the description of the embodiments or the prior art. Obviously, the accompanying drawings in the following description are only These are some embodiments of the present invention. For those skilled in the art, other drawings can also be obtained according to these drawings without any creative effort.

图1为本发明的违规终端内置行为处理方法的第一实施例的流程图;FIG. 1 is a flow chart of the first embodiment of the method for processing built-in behaviors of illegal terminals according to the present invention;

图2为本发明的用户群组二次确认策略配置图;FIG. 2 is a configuration diagram of a user group secondary confirmation strategy of the present invention;

图3为本发明的违规终端内置行为处理方法的第二实施例的流程图;FIG. 3 is a flow chart of the second embodiment of the method for processing built-in behaviors of illegal terminals according to the present invention;

图4为本发明的业务群组二次确认策略配置图;FIG. 4 is a configuration diagram of a business group secondary confirmation strategy of the present invention;

图5为用户采用本发明的方法点播SP业务的流程图;Fig. 5 is the flowchart that the user adopts the method for ordering SP business of the present invention;

图6为本发明的违规终端内置行为处理装置的第一实施例的结构示意图;FIG. 6 is a schematic structural diagram of the first embodiment of the device for processing violations of the built-in behavior of the terminal according to the present invention;

图7为本发明的违规终端内置行为处理装置的用户鉴权控制单元的结构示意图;7 is a schematic structural diagram of the user authentication control unit of the built-in behavior processing device for violating terminals according to the present invention;

图8为本发明的违规终端内置行为处理装置的第二实施例的结构示意图;FIG. 8 is a schematic structural diagram of a second embodiment of the device for processing violations built into terminals of the present invention;

图9为本发明的违规终端内置行为处理装置的业务鉴权控制单元的结构示意图;FIG. 9 is a schematic structural diagram of the service authentication control unit of the built-in behavior processing device for illegal terminals according to the present invention;

图10为本发明的违规终端内置行为处理系统的一实施例结构示意图;FIG. 10 is a schematic structural diagram of an embodiment of a built-in behavior processing system of a violation terminal according to the present invention;

图11为本发明的稽核系统的结构示意图;Fig. 11 is a structural schematic diagram of the audit system of the present invention;

图12为本发明的业务管理平台的结构示意图;Fig. 12 is a schematic structural diagram of the business management platform of the present invention;

图13 为本发明的用户鉴权模块的结构示意图。Fig. 13 is a schematic structural diagram of the user authentication module of the present invention.

具体实施方式detailed description

下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有作出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

请参见图1,为本发明违规终端内置行为处理方法的第一实施例的流程图;所述方法包括:Please refer to FIG. 1, which is a flow chart of the first embodiment of the method for processing the built-in behavior of the illegal terminal according to the present invention; the method includes:

步骤S101,采集业务管理平台全部用户的行为日志数据。Step S101, collecting behavior log data of all users of the service management platform.

具体实现中,采集业务管理平台全部用户的行为日志数据为现有技术,此处不再赘述。In a specific implementation, collecting the behavior log data of all users of the service management platform is an existing technology, and will not be repeated here.

步骤S102,抽取所述用户上行使用业务的日志数据。Step S102, extracting the log data of the user's uplink service.

具体实现中,抽取所述用户上行使用业务的日志数据为现有技术,此处不再赘述。In a specific implementation, extracting the log data of the user's uplink service is a prior art, and will not be repeated here.

步骤S103,按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常。Step S103, calculating the daily uplink frequency of the user terminal number according to the user terminal number, and judging whether the frequency is within a preset value range, and if so, counting 1 frequency abnormality.

具体的,所述频次是指用户通过短信通道上行使用SP业务的时间间隔。若所述频次在预先设定的频次异常范围内(如0≦频次≦10,可配),则计1次频次异常,根据此规则统计用户号码每日频次异常次数。Specifically, the frequency refers to the time interval for the user to use the SP service uplink through the short message channel. If the frequency is within the pre-set abnormal frequency range (such as 0≦frequency≦10, can be configured), then count as 1 frequency abnormality, and count the daily frequency abnormalities of the user number according to this rule.

其判断原理如下:违规内置了SP业务的终端(山寨机),通常在用户点击菜单触发或者后门程序捕捉用户按键将自动触发上行请求使用业务,即代用户自动发起请求,由于用户按键的时间非常短,就会导致用户的上行频次非常短,通常都只有几秒,有的甚至在同一秒内存在多次上行的情况。而正常用户发起请求,需输入指令短信,然后再发送,再看下行结果,再重新编写点播指令发送短信,上行频次一般不会低于10秒。因此,可将频次小于10秒的上行点播视为异常。The judging principle is as follows: for terminals (cottage phones) with built-in SP services in violation of regulations, usually when the user clicks on the menu to trigger or the backdoor program captures the user's key press, it will automatically trigger the uplink request to use the service, that is, the request is automatically initiated on behalf of the user. If it is short, the user's uplink frequency will be very short, usually only a few seconds, and some even have multiple uplinks in the same second. When a normal user initiates a request, he needs to enter an instruction message, then send it, and then check the downlink result, and then rewrite the on-demand instruction to send the message. The uplink frequency is generally not less than 10 seconds. Therefore, the uplink video-on-demand with a frequency less than 10 seconds can be regarded as abnormal.

步骤S104,判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户。Step S104, judging whether the number of abnormal frequencies of the user terminal number within a certain period exceeds a set number, and if so, judging as an abnormal user.

具体的,若用户终端号码上行使用业务,一周内多日(如超过3日,可配)存在上行频次异常,或一周内存在多次(如超过7次,可配)上行频次异常,可认定该用户终端号码为异常用户。Specifically, if the user terminal number is used for uplink services, there are abnormal uplink frequencies on multiple days in a week (for example, more than 3 days, it can be configured), or there are multiple times in a week (for example, more than 7 times, it can be configured) the abnormal uplink frequency can be determined. This user terminal number is an abnormal user.

步骤S105,对所述异常用户点播SP业务的操作进行用户鉴权控制。Step S105, performing user authentication control on the abnormal user's operation of ordering SP services.

具体实现中,对所述异常用户点播SP业务的操作进行用户鉴权控制的步骤包括:In the specific implementation, the steps of performing user authentication control on the operation of the SP service requested by the abnormal user include:

(一)对所述异常用户进行用户群组鉴权,确定其所属的用户群组;(1) Perform user group authentication on the abnormal user, and determine the user group to which he belongs;

(二)采用确定的用户群组所对应的用户群组二次确认策略对所述异常用户点播的SP业务进行鉴权控制。(2) Using the user group secondary confirmation policy corresponding to the determined user group to perform authentication control on the SP service requested by the abnormal user.

其中,步骤(一)对所述异常用户进行用户群组鉴权,确定其所属的用户群组的步骤,具体包括:Wherein, step (1) performs user group authentication on the abnormal user and determines the user group to which it belongs, specifically including:

根据所述异常用户对违规收费的投诉量或者投诉频率,确定所述异常用户所属的用户群组。The user group to which the abnormal user belongs is determined according to the amount or frequency of complaints of the abnormal user about the illegal charges.

所述用户群组包括高敏感度用户群组和低敏感度用户群组,其中,对违规收费的投诉量或者投诉频率达到第一设定数目条件的用户属于高敏感度用户群组,对违规收费的投诉量或者投诉频率达到第二设定数目条件的用户属于低敏感度用户群组。根据所述异常用户对违规收费的投诉量或者投诉频率,确定所述异常用户所属的用户群组。The user groups include a high-sensitivity user group and a low-sensitivity user group, wherein users whose complaint volume or frequency of complaints about illegal charges reaches a first set number belong to the high-sensitivity user group, and those who violate the regulations Users whose charged complaint volume or complaint frequency reaches the second set number condition belong to the low-sensitivity user group. The user group to which the abnormal user belongs is determined according to the amount or frequency of complaints of the abnormal user about the illegal charges.

步骤(二)采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权控制。Step (2) Using the user group secondary confirmation policy corresponding to the determined user group to perform authentication control on the SP service ordered by the user.

具体实现中,对应的用户群组二次确认策略请参见图2所示。In specific implementation, please refer to FIG. 2 for the corresponding user group secondary confirmation policy.

所述高敏感度用户群组设定的对应用户群组二次确认策略为:随机码二次确认或者复杂问题二次确认,其中随机码和复杂问题都由相应的题库提供。随机码一般为一个字符串,其确认方式可以为,例如:“请输入字符串‘ahgt21’以确认点播”,用户输入“ahgt21”方可确认点播;复杂问题是指其答案唯一的问题,例如:“2加3等于几?”答案为“5”,用户输入正确答案方可确认点播。The corresponding user group secondary confirmation strategy set by the high-sensitivity user group is: secondary confirmation of random codes or secondary confirmation of complex questions, wherein both random codes and complex questions are provided by corresponding question banks. The random code is generally a string, and its confirmation method can be, for example: "Please enter the string 'ahgt21' to confirm the on-demand", the user can only input "ahgt21" to confirm the on-demand; complex questions refer to questions that have only one answer, such as : "What is 2 plus 3?" The answer is "5", and the user can confirm on-demand only by inputting the correct answer.

所述低敏感度用户群组设定的对应用户群组二次确认策略为:简单问题二次确认,其中简单问题由相应的题库提供,简单问题是指其答案有很多个的问题,例如:“请输入10至20之间的任意数字”,用户可以输入“11,12,……,19”中的任意一个,即可确认点播。The corresponding user group secondary confirmation strategy set by the low-sensitivity user group is: simple question secondary confirmation, wherein the simple question is provided by the corresponding question bank, and the simple question refers to a question with many answers, such as: "Please enter any number between 10 and 20", the user can enter any one of "11, 12, ..., 19" to confirm the on-demand.

需要注意的是,图中所示高敏感度用户群组对应的用户群组二次确认策略为随机码二次确认或者复杂问题二次确认;低敏感度用户群组对应的用户群组二次确认策略为简单问题二次确认的模式并不是唯一确定的,还可以有其他的对应模式,只要满足一种用户群组对应一种二次确认的模式即可。It should be noted that the secondary confirmation policy of the user group corresponding to the high-sensitivity user group shown in the figure is the secondary confirmation of random code or the secondary confirmation of complex questions; the secondary confirmation of the user group corresponding to the low-sensitivity user group The confirmation strategy is that the mode of secondary confirmation for simple questions is not unique, and there may be other corresponding modes, as long as a user group corresponds to a secondary confirmation mode.

本发明实施例具有以下技术效果:Embodiments of the present invention have the following technical effects:

1、通过稽核判断,统计分析用户上行使用业务的日志数据,能够更加准确的发现终端嫌疑存在违规内置行为的异常用户和异常SP业务,进而对其进行分组,针对不同群组设置不同控制策略,实现精细化管理。1. Through audit and judgment, statistical analysis of log data of users' uplink services can more accurately discover abnormal users and abnormal SP services suspected of having illegal built-in behaviors in the terminal, and then group them, and set different control strategies for different groups. Realize refined management.

2、针对不同的用户群组,采用不同的用户群组二次确认控制策略,能够实现有针对性的管理操作,使终端违规内置不能轻易的替用户完成二次确认,更加有效的减少终端违规吸费的情况,降低用户对违规吸费的投诉量,同时,也能提高正常用户使用业务的感知。2. For different user groups, adopt different user group secondary confirmation control strategies, which can achieve targeted management operations, so that the built-in terminal violations cannot easily complete the secondary confirmation for users, and more effectively reduce terminal violations The situation of charging fees can reduce the number of complaints from users about illegal charging fees, and at the same time, it can also improve the perception of normal users in using services.

请参见图3,为本发明违规终端内置行为处理方法的第二实施例的流程图;所述方法包括:Please refer to FIG. 3, which is a flow chart of the second embodiment of the method for processing the built-in behavior of the illegal terminal according to the present invention; the method includes:

步骤S301,采集业务管理平台全部用户的行为日志数据。Step S301, collect behavior log data of all users of the service management platform.

具体实现中,与图1所示实施例中的步骤S101相同,在此不再赘述。In specific implementation, it is the same as step S101 in the embodiment shown in FIG. 1 , and details are not repeated here.

步骤S302,抽取所述用户上行使用业务的日志数据。Step S302, extracting the log data of the user's uplink service.

具体实现中,与图1所示实施例中的步骤S102相同,在此不再赘述。In specific implementation, it is the same as step S102 in the embodiment shown in FIG. 1 , and details are not repeated here.

步骤S303,按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常。Step S303, calculating the daily uplink frequency of the user terminal number according to the user terminal number, and judging whether the frequency is within a preset value range, and if so, counting 1 frequency abnormality.

具体实现中,与图1所示实施例中的步骤S103相同,在此不再赘述。In specific implementation, it is the same as step S103 in the embodiment shown in FIG. 1 , and details are not repeated here.

步骤S304,判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户。Step S304, judging whether the number of abnormal frequencies of the user terminal number within a certain period exceeds a set number, and if so, judging as an abnormal user.

具体实现中,与图1所示实施例中的步骤S104相同,在此不再赘述。In specific implementation, it is the same as step S104 in the embodiment shown in FIG. 1 , and details are not repeated here.

步骤S305,抽取所述异常用户在一定周期内成功上行的访问的SP业务列表。Step S305, extracting a list of SP services accessed by the abnormal user successfully uplinked within a certain period.

具体实现中,例如,抽取所述异常用户在一周内成功上行访问SP业务列表。In a specific implementation, for example, a list of services that the abnormal user has successfully uplinked to access the SP within a week is extracted.

步骤S306,按所述业务列表中的业务统计相应的成功上行指标。Step S306, counting the corresponding successful uplink indicators according to the services in the service list.

具体实现中,所述成功上行指标包括异常用户数、异常用户成功上行数以及异常用户成功上行占比中的任意一种或多种。In a specific implementation, the successful uplink indicator includes any one or more of the number of abnormal users, the number of successful uplinks by abnormal users, and the proportion of successful uplinks by abnormal users.

所述异常用户数:指周期内访问该业务的“异常用户终端号码数量”;The number of abnormal users: refers to the "number of abnormal user terminal numbers" that access the service within a period;

所述异常用户成功上行数:指周期内访问该业务的“异常用户成功上行数”;The number of successful uplinks of abnormal users: refers to the "number of successful uplinks of abnormal users" who access the service within a period;

所述异常用户成功上行占比:指周期内访问该业务的异常用户成功上行数与周期内访问该业务的全部成功上行数的比值,可由“异常用户成功上行数除以成功上行数,再乘以100%”得到。The proportion of successful uploads of abnormal users: refers to the ratio of the number of successful uploads of abnormal users accessing the service within the period to the total number of successful uploads of the service within the period, which can be divided by the number of successful uploads of abnormal users divided by the number of successful uploads, and then multiplied by Get it at 100%.

步骤S307,判断所述成功上行指标是否超过设定数目,如是,则判定该业务为异常SP业务。Step S307, judging whether the successful uplink index exceeds the set number, if so, judging that the service is an abnormal SP service.

具体实现中,如果周期内(如一周)异常用户数超过设定值(如1000,可配)或“异常用户成功上行数”超过设定值(如5000,可配),且异常成功上行占比超过设定值(如10%,可配),则判定该业务为异常SP业务。In the specific implementation, if the number of abnormal users exceeds the set value (such as 1000, configurable) or the "abnormal user successful upstream number" exceeds the set value (such as 5000, configurable) within a period (such as a week), and the abnormal successful upstream accounts for If the ratio exceeds the set value (such as 10%, configurable), it is determined that the service is an abnormal SP service.

步骤S308,对用户点播所述异常SP业务的操作进行业务鉴权控制。Step S308, performing service authentication control on the user's ordering operation of the abnormal SP service.

具体实现中,对用户点播所述异常SP业务的操作进行业务鉴权控制的步骤包括:In the specific implementation, the steps of performing service authentication control on the operation of the user ordering the abnormal SP service include:

(一)对所述异常SP业务进行业务群组鉴权,确定其所属业务群组;(1) Perform business group authentication on the abnormal SP business, and determine the business group to which it belongs;

(二)采用确定的业务群组所对应的业务群组二次确认策略对所述SP业务进行鉴权控制。(2) Perform authentication control on the SP service by adopting the service group secondary confirmation strategy corresponding to the determined service group.

其中,步骤(一)对所述SP业务进行业务群组鉴权,确定其所属业务群组的步骤进一步包括:Wherein, step (1) performs service group authentication on the SP service, and the step of determining the service group to which it belongs further includes:

根据所述异常SP业务违规严重程度的不同,确定所述SP异常业务所属的业务群组。Determine the service group to which the SP abnormal service belongs according to the severity of violations of the abnormal SP service.

具体实现中,所述业务群组包括高违规度业务群组、中违规度业务群组以及低违规度业务群组,其中,出现频次异常次数达到第三设定数目条件的SP业务属于高违规度业务群组,出现频次异常次数达到第四设定数目条件的SP业务属于中违规度业务群组,出现频次异常次数达到第五设定数目条件的SP业务属于低违规度业务群组。根据所述异常SP业务违规严重程度的不同,确定所述SP异常业务所属的业务群组。In the specific implementation, the business group includes a high-violation business group, a medium-violation business group, and a low-violation business group, wherein, the SP business whose occurrence frequency abnormality reaches the third set number condition belongs to the high violation The SP business whose occurrence frequency of abnormal frequency reaches the fourth set number condition belongs to the medium violation degree business group, and the SP business whose frequency abnormality frequency reaches the fifth set number condition belongs to the low violation degree business group. Determine the service group to which the SP abnormal service belongs according to the severity of violations of the abnormal SP service.

步骤(二)采用确定的业务群组所对应的业务群组二次确认策略对所述SP业务进行鉴权控制。Step (2) performing authentication control on the SP service by adopting the service group secondary confirmation policy corresponding to the determined service group.

具体实现中,对应的业务群组二次确认策略请参见图4所示。In specific implementation, please refer to Figure 4 for the corresponding business group secondary confirmation policy.

所述高违规度业务群组对应的业务群组二次确认策略:二次确认规则为每次点播均二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认。其中,复杂问题由相应的题库提供,复杂问题是指其答案唯一的问题,例如:“2加3等于几?” 答案为“5”,用户输入正确答案方可确认点播。随机码由相应的题库提供。随机码一般为一个字符串,其确认方式可以为,例如:“请输入字符串‘ahgt21’以确认点播”,用户输入“ahgt21”方可确认点播。The business group secondary confirmation strategy corresponding to the high-violation service group: the secondary confirmation rule is a secondary confirmation for each order, and the secondary confirmation mode is a complex question secondary confirmation or a random code secondary confirmation. Among them, the complex question is provided by the corresponding question bank, and the complex question refers to the question whose answer is unique, for example: "What is 2 plus 3?" The random code is provided by the corresponding question bank. The random code is generally a character string, and its confirmation method can be, for example: "Please enter the character string 'ahgt21' to confirm the order", and the user can input "ahgt21" to confirm the order.

所述中违规度业务群组对应的业务群组二次确认策略:二次确认规则为首次点播二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认。其中,复杂问题由相应的题库提供,复杂问题是指其答案唯一的问题,例如:“2加3等于几?” 答案为“5”,用户输入正确答案方可确认点播。随机码由相应的题库提供。随机码一般为一个字符串,其确认方式可以为,例如:“请输入字符串‘ahgt21’以确认点播”,用户输入“ahgt21”方可确认点播。The business group secondary confirmation strategy corresponding to the business group with a medium degree of violation: the secondary confirmation rule is the secondary confirmation of the first on-demand broadcast, and the secondary confirmation mode is the secondary confirmation of complex questions or the secondary confirmation of random codes. Among them, the complex question is provided by the corresponding question bank, and the complex question refers to the question whose answer is unique, for example: "What is 2 plus 3?" The random code is provided by the corresponding question bank. The random code is generally a character string, and its confirmation method can be, for example: "Please enter the character string 'ahgt21' to confirm the order", and the user can input "ahgt21" to confirm the order.

所述低违规度业务群组对应的业务群组二次确认策略:二次确认规则为首次点播二次确认,二次确认模式为简单问题二次确认。其中简单问题由相应的题库提供,简单问题是指其答案有很多个的问题,例如:“请输入10至20之间的任意数字”,用户可以输入“11,12,……,19”中的任意一个,即可确认点播。The business group secondary confirmation strategy corresponding to the low-violation business group: the secondary confirmation rule is the secondary confirmation of the first on-demand program, and the secondary confirmation mode is the secondary confirmation of simple questions. Among them, simple questions are provided by the corresponding question bank. Simple questions refer to questions with many answers, for example: "Please enter any number between 10 and 20", the user can enter "11,12,...,19" Any one of the , you can confirm on-demand.

需要注意的是,图中所示所述高违规度业务群组对应的二次确认规则为每次点播均二次确认,对应的二次确认模式为复杂问题或者随机码二次确认,中违规度业务群组对应的二次确认规则为首次点播二次确认,对应的二次确认模式为复杂问题或者随机码二次确认,低违规度业务群组对应的二次确认规则为首次点播二次确认,对应的二次确认模式为简单问题二次确认的模式并不是唯一确定的,还可以有其他的对应模式,只要满足一种业务群组对应一种二次确认规则和一种二次确认模式即可。It should be noted that the secondary confirmation rule corresponding to the high-violation business group shown in the figure is secondary confirmation for each order, and the corresponding secondary confirmation mode is complex question or random code secondary confirmation, medium violation The second confirmation rule corresponding to the high-degree business group is the first on-demand second confirmation, the corresponding second confirmation mode is the second confirmation of complex questions or random codes, and the second confirmation rule corresponding to the low-violation business group is the first on-demand second Confirmation, the corresponding secondary confirmation mode is a simple question. The secondary confirmation mode is not unique, and there are other corresponding modes, as long as a business group corresponds to a secondary confirmation rule and a secondary confirmation mode.

请参见图5,为用户采用本发明方法点播SP业务的流程图。Please refer to FIG. 5 , which is a flowchart of ordering SP services by users using the method of the present invention.

1)用户发起上行指令点播业务到短信网关;1) The user initiates an uplink command-on-demand service to the SMS gateway;

2)短信网关将点播请求发送到业务管理平台;2) The SMS gateway sends the on-demand request to the business management platform;

3)业务管理平台进行用户鉴权、业务鉴权等鉴权操作;3) The business management platform performs authentication operations such as user authentication and business authentication;

4)业务管理平台做用户群组鉴权,判断用户属于哪个群组;4) The business management platform performs user group authentication to determine which group the user belongs to;

5)用户群组二次确认策略鉴权,判断归属的用户群组所对应的二次确认策略;5) User group secondary confirmation strategy authentication, to determine the secondary confirmation strategy corresponding to the user group to which they belong;

6)业务管理平台做业务群组鉴权,判断业务属于哪个群组;6) The business management platform conducts business group authentication to determine which group the business belongs to;

7)业务群组二次确认策略鉴权,判断归属的业务群组所对应的二次确认策略;7) Business group secondary confirmation strategy authentication, to determine the secondary confirmation strategy corresponding to the business group to which it belongs;

8)业务管理平台返回短信网关点播请求应答,标识需要用户进行二次确认;8) The service management platform returns the SMS gateway request response, and the identification requires the user to confirm twice;

9)业务管理平台向短信中心转发二次确认请求,携带二次确认策略;9) The business management platform forwards the second confirmation request to the SMS center, carrying the second confirmation strategy;

10)短信中心根据二次确认策略,组合相应的二次确认短信;10) The SMS center combines the corresponding secondary confirmation SMS according to the secondary confirmation strategy;

11)短信中心向用户下发二次确认短信;11) The SMS center sends a second confirmation SMS to the user;

12)用户回复二次确认短信;12) The user replies to the second confirmation message;

13)短信中心向业务管理平台发起点播确认请求;13) The SMS center initiates an on-demand confirmation request to the business management platform;

14)业务管理平台生成临时订购关系;14) The business management platform generates a temporary order relationship;

15)业务管理平台向短信网关发送点播确认响应;15) The business management platform sends an on-demand confirmation response to the SMS gateway;

16)短信网关下发点播确认响应给用户。16) The SMS gateway sends an on-demand confirmation response to the user.

本发明实施例具有以下技术效果:Embodiments of the present invention have the following technical effects:

1、通过稽核判断,统计分析用户上行使用业务的日志数据,能够更加准确的发现终端嫌疑存在违规内置行为的异常用户和异常SP业务,进而对其进行分组,针对不同群组设置不同控制策略,实现精细化管理。1. Through audit and judgment, statistical analysis of log data of users' uplink services can more accurately discover abnormal users and abnormal SP services suspected of having illegal built-in behaviors in the terminal, and then group them, and set different control strategies for different groups. Realize refined management.

2、针对不同违规程度业务群组采用不同的二次确认策略,既可有效控制山寨机违规业务使用,使终端违规内置不能轻易的替用户完成二次确认,更加有效的减少终端违规吸费的情况,降低用户对违规吸费的投诉量,保障用户利益免受侵害。2. Different secondary confirmation strategies are adopted for business groups with different degrees of violations, which can effectively control the illegal business use of counterfeit machines, so that the built-in terminal violations cannot easily complete the secondary confirmation for users, and more effectively reduce the risk of terminal violations. In order to reduce the number of complaints from users about illegal fees, and protect the interests of users from infringement.

相应的,本发明还公开了一种违规终端内置行为处理装置,图6为本发明的违规终端内置行为处理装置的第一实施例的结构示意图,如图6 所示,所述装置1包括:采集单元11、第一抽取单元12、第一统计单元13,第一判断单元14以及用户鉴权控制单元15。Correspondingly, the present invention also discloses a built-in behavior processing device for illegal terminals. FIG. 6 is a schematic structural diagram of the first embodiment of the built-in behavior processing device for illegal terminals of the present invention. As shown in FIG. 6 , the device 1 includes: A collection unit 11 , a first extraction unit 12 , a first statistics unit 13 , a first judgment unit 14 and a user authentication control unit 15 .

所述采集单元11,用于采集业务管理平台全部用户的行为日志数据。The collection unit 11 is configured to collect behavior log data of all users of the service management platform.

具体的,所述采集单元11为现有技术,此处不再赘述。Specifically, the acquisition unit 11 is an existing technology, and will not be repeated here.

所述第一抽取单元12,用于抽取所述用户上行使用业务的日志数据。The first extracting unit 12 is configured to extract the log data of the user's uplink service.

具体的,所述第一抽取单元12为现有技术,此处不再赘述。Specifically, the first extracting unit 12 is an existing technology, which will not be repeated here.

所述第一统计单元13,用于按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常。The first statistical unit 13 is used to calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within a preset value range, and if so, count 1 frequency abnormality .

具体的,所述频次是指用户通过短信通道上行使用SP业务的时间间隔。若所述频次在预先设定的频次异常范围内(如0≦频次≦10,可配),则计1次频次异常,所述第一统计单元根据此规则统计用户号码每日频次异常次数。Specifically, the frequency refers to the time interval for the user to use the SP service uplink through the short message channel. If the frequency is within the preset abnormal frequency range (such as 0≦frequency≦10, which can be configured), then one frequency abnormality will be counted, and the first statistical unit will count the daily frequency abnormalities of the user number according to this rule.

其判断原理如下:违规内置了SP业务的终端(山寨机),通常在用户点击菜单触发或者后门程序捕捉用户按键将自动触发上行请求使用业务,即代用户自动发起请求,由于用户按键的时间非常短,就会导致用户的上行频次非常短,通常都只有几秒,有的甚至在同一秒内存在多次上行的情况。而正常用户发起请求,需输入指令短信,然后再发送,再看下行结果,再重新编写点播指令发送短信,上行频次一般不会低于10秒。因此,可将频次小于10秒的上行点播视为频次异常。The judging principle is as follows: for terminals (cottage phones) with built-in SP services in violation of regulations, usually when the user clicks on the menu to trigger or the backdoor program captures the user's key press, it will automatically trigger the uplink request to use the service, that is, the request is automatically initiated on behalf of the user. If it is short, the user's uplink frequency will be very short, usually only a few seconds, and some even have multiple uplinks in the same second. When a normal user initiates a request, he needs to enter an instruction message, then send it, and then check the downlink result, and then rewrite the on-demand instruction to send the message. The uplink frequency is generally not less than 10 seconds. Therefore, an uplink video-on-demand with a frequency of less than 10 seconds can be regarded as an abnormal frequency.

所述第一判断单元14,用于判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户。The first judging unit 14 is used to judge whether the number of abnormal frequencies of the user terminal number within a certain period exceeds a set number, and if so, it is judged as an abnormal user.

具体的,若用户终端号码上行使用业务,一周内多日(如超过3日,可配)存在上行频次异常,或一周内存在多次(如超过7次,可配)上行频次异常,可认定该用户终端号码为异常用户。Specifically, if the user terminal number is used for uplink services, there are abnormal uplink frequencies on multiple days in a week (for example, more than 3 days, it can be configured), or there are multiple times in a week (for example, more than 7 times, it can be configured) the abnormal uplink frequency can be determined. This user terminal number is an abnormal user.

用户鉴权控制单元15,用于对所述异常用户点播SP业务的操作进行用户鉴权控制。The user authentication control unit 15 is configured to perform user authentication control on the abnormal user's operation of ordering SP services.

具体的,所述用户鉴权控制单元15进一步包括:第一确定单元151和第一控制单元152,具体请参见图7所示。Specifically, the user authentication control unit 15 further includes: a first determination unit 151 and a first control unit 152, please refer to FIG. 7 for details.

所述第一确定单元151,用于对所述用户进行用户群组鉴权,确定其所属的用户群组。The first determining unit 151 is configured to perform user group authentication on the user, and determine the user group to which the user belongs.

具体实现中,所述用户群组包括高敏感度用户群组和低敏感度用户群组,其中,对违规收费的投诉量或者投诉频率达到第一设定数目条件的用户属于高敏感度用户群组,对违规收费的投诉量或者投诉频率达到第二设定数目条件的用户属于低敏感度用户群组。根据所述异常用户对违规收费的投诉量或者投诉频率,确定所述异常用户所属的用户群组。In a specific implementation, the user group includes a high-sensitivity user group and a low-sensitivity user group, wherein users whose complaint volume or frequency of complaints about illegal charges reaches a first set number condition belong to the high-sensitivity user group Group, the users whose complaint volume or frequency of complaints about illegal charges reaches the second set number condition belong to the low-sensitivity user group. The user group to which the abnormal user belongs is determined according to the amount or frequency of complaints of the abnormal user about the illegal charges.

所述第一控制单元152,用于采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权控制。The first control unit 152 is configured to use the user group secondary confirmation policy corresponding to the determined user group to perform authentication control on the SP service ordered by the user.

具体实现中,对应的用户群组二次确认策略请参见图2所示。In specific implementation, please refer to FIG. 2 for the corresponding user group secondary confirmation policy.

所述高敏感度用户群组设定的对应用户群组二次确认策略为:随机码二次确认或者复杂问题二次确认,其中随机码和复杂问题都由相应的题库提供。随机码一般为一个字符串,其确认方式可以为,例如:“请输入字符串‘ahgt21’以确认点播”,用户输入“ahgt21”方可确认点播;复杂问题是指其答案唯一的问题,例如:“2加3等于几?” 答案为“5”,用户输入正确答案方可确认点播。The corresponding user group secondary confirmation strategy set by the high-sensitivity user group is: secondary confirmation of random codes or secondary confirmation of complex questions, wherein both random codes and complex questions are provided by corresponding question banks. The random code is generally a string, and its confirmation method can be, for example: "Please enter the string 'ahgt21' to confirm the on-demand", the user can only input "ahgt21" to confirm the on-demand; complex questions refer to questions that have only one answer, such as : "What is 2 plus 3?" The answer is "5", and the user can confirm on-demand only after inputting the correct answer.

所述低敏感度用户群组设定的对应用户群组二次确认策略为:简单问题二次确认,其中简单问题由相应的题库提供,简单问题是指其答案有很多个的问题,例如:“请输入10至20之间的任意数字”,用户可以输入“11,12,……,19”中的任意一个,即可确认点播。The corresponding user group secondary confirmation strategy set by the low-sensitivity user group is: simple question secondary confirmation, wherein the simple question is provided by the corresponding question bank, and the simple question refers to a question with many answers, such as: "Please enter any number between 10 and 20", the user can enter any one of "11, 12, ..., 19" to confirm the on-demand.

需要注意的是,图中所示高敏感度用户群组对应的用户群组二次确认策略为随机码二次确认或者复杂问题二次确认;低敏感度用户群组对应的用户群组二次确认策略为简单问题二次确认的模式并不是唯一确定的,还可以有其他的对应模式,只要满足一种用户群组对应一种二次确认的模式即可。It should be noted that the secondary confirmation policy of the user group corresponding to the high-sensitivity user group shown in the figure is the secondary confirmation of random code or the secondary confirmation of complex questions; the secondary confirmation of the user group corresponding to the low-sensitivity user group The confirmation strategy is that the mode of secondary confirmation for simple questions is not unique, and there may be other corresponding modes, as long as a user group corresponds to a secondary confirmation mode.

本发明实施例具有以下技术效果:Embodiments of the present invention have the following technical effects:

1、通过稽核判断,统计分析用户上行使用业务的日志数据,能够更加准确的发现终端嫌疑存在违规内置行为的异常用户,进而对其进行分组,针对不同群组设置不同控制策略,实现精细化管理。1. Through audit and judgment, statistical analysis of log data of users' uplink services can more accurately find abnormal users suspected of having illegal built-in behaviors in the terminal, and then group them, and set different control strategies for different groups to achieve refined management .

2、针对不同的用户群组,采用不同的用户群组二次确认控制策略,能够实现有针对性的管理操作,使终端违规内置不能轻易的替用户完成二次确认,更加有效的减少终端违规吸费的情况,降低用户对违规吸费的投诉量,同时,也能提高正常用户使用业务的感知。2. For different user groups, adopt different user group secondary confirmation control strategies, which can achieve targeted management operations, so that the built-in terminal violations cannot easily complete the secondary confirmation for users, and more effectively reduce terminal violations The situation of charging fees can reduce the number of complaints from users about illegal charging fees, and at the same time, it can also improve the perception of normal users in using services.

图8为本发明的违规终端内置行为处理装置的第二实施例的结构示意图,如图8所示,所述装置2包括:采集单元21、第一抽取单元22、第一统计单元23,第一判断单元24、用户鉴权控制单元25、第二抽取单元26、第二统计单元27、第二判断单元28、以及业务鉴权控制单元29。FIG. 8 is a schematic structural diagram of a second embodiment of a device for processing violations built into a terminal of the present invention. As shown in FIG. A judgment unit 24 , a user authentication control unit 25 , a second extraction unit 26 , a second statistics unit 27 , a second judgment unit 28 , and a service authentication control unit 29 .

所述采集单元21,用于采集业务管理平台全部用户的行为日志数据。The collection unit 21 is configured to collect behavior log data of all users of the service management platform.

具体的,与图6所示实施例中的采集单元11相同,此处不再赘述。Specifically, it is the same as the collection unit 11 in the embodiment shown in FIG. 6 , and will not be repeated here.

所述第一抽取单元22,用于抽取所述用户上行使用业务的日志数据。The first extracting unit 22 is configured to extract the log data of the user's uplink usage service.

具体的,与图6所示实施例中的第一抽取单元12相同,此处不再赘述。Specifically, it is the same as the first extracting unit 12 in the embodiment shown in FIG. 6 , and details are not repeated here.

所述第一统计单元23,用于按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常。The first statistical unit 23 is used to calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within a preset value range, and if so, count 1 frequency abnormality .

具体的,与图6所示实施例中的第一统计单元13相同,此处不再赘述。Specifically, it is the same as the first statistics unit 13 in the embodiment shown in FIG. 6 , and details are not repeated here.

所述第一判断单元24,用于判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户。The first judging unit 24 is used for judging whether the number of abnormal frequencies of the user terminal number within a certain period exceeds a set number, and if so, it is judged as an abnormal user.

具体的,与图6所示实施例中的第一判断单元14相同,此处不再赘述。Specifically, it is the same as the first judging unit 14 in the embodiment shown in FIG. 6 , and details are not repeated here.

所述用户鉴权控制单元25,用于对所述异常用户点播SP业务的操作进行用户鉴权控制。The user authentication control unit 25 is configured to perform user authentication control on the abnormal user's operation of ordering SP services.

具体的,与图6所示实施例中的用户鉴权控制单元15相同,此处不再赘述。Specifically, it is the same as the user authentication control unit 15 in the embodiment shown in FIG. 6 , and will not be repeated here.

第二抽取单元26,用于抽取所述异常用户在一定周期内成功上行的访问的SP业务列表。The second extracting unit 26 is configured to extract a list of SP services accessed successfully by the abnormal user within a certain period.

具体的,例如,抽取所述异常用户在一周内成功上行访问SP业务列表。Specifically, for example, extract the list of SP services that the abnormal user has successfully uplinked within a week.

第二统计单元27,用于按所述业务列表中的业务统计相应的成功上行指标。The second statistical unit 27 is configured to count the corresponding successful uplink indicators according to the services in the service list.

具体的,所述成功上行指标包括异常用户数、异常用户成功上行数以及异常用户成功上行占比中的任意一种或多种。Specifically, the successful uplink indicator includes any one or more of the number of abnormal users, the number of successful uplinks by abnormal users, and the proportion of successful uplinks by abnormal users.

所述异常用户数:指周期内访问该业务的“异常用户终端号码数量”;The number of abnormal users: refers to the "number of abnormal user terminal numbers" that access the service within a period;

所述异常用户成功上行数:指周期内访问该业务的“异常用户成功上行数”;The number of successful uplinks of abnormal users: refers to the "number of successful uplinks of abnormal users" who access the service within a period;

所述异常用户成功上行占比:指周期内访问该业务的异常用户成功上行数与周期内访问该业务的全部成功上行数的比值,可由“异常用户成功上行数除以成功上行数,再乘以100%”得到。The proportion of successful uploads of abnormal users: refers to the ratio of the number of successful uploads of abnormal users accessing the service within the period to the total number of successful uploads of the service within the period, which can be divided by the number of successful uploads of abnormal users divided by the number of successful uploads, and then multiplied by Get it at 100%.

第二判断单元28,用于判断所述成功上行指标是否超过设定数目,如是,则判定为异常SP业务。The second judging unit 28 is used for judging whether the successful uplink index exceeds the set number, and if so, it is judged as an abnormal SP service.

具体实现中,如果周期内(如一周)异常用户数超过设定值(如1000,可配)或“异常用户成功上行数”超过设定值(如5000,可配),且异常成功上行占比超过设定值(如10%,可配),则判定该业务为异常SP业务。In the specific implementation, if the number of abnormal users exceeds the set value (such as 1000, configurable) or the "abnormal user successful upstream number" exceeds the set value (such as 5000, configurable) within a period (such as a week), and the abnormal successful upstream accounts for If the ratio exceeds the set value (such as 10%, configurable), it is determined that the service is an abnormal SP service.

所述业务鉴权控制单元29,用于对用户点播所述异常SP业务的操作进行业务鉴权控制。The service authentication control unit 29 is configured to perform service authentication control on the user's ordering operation of the abnormal SP service.

具体的,所述业务鉴权控制单元29进一步包括:第二确定单元291和第二Specifically, the service authentication control unit 29 further includes: a second determining unit 291 and a second

控制单元292,具体请参见图9所示。For the control unit 292, please refer to FIG. 9 for details.

所述第二确定单元291,用于对所述异常SP业务进行业务群组鉴权,确定其所属的业务群组。The second determining unit 291 is configured to perform service group authentication on the abnormal SP service, and determine the service group to which it belongs.

具体实现中,所述业务群组包括高违规度业务群组、中违规度业务群组以及低违规度业务群组,其中,出现频次异常次数达到第三设定数目条件的SP业务属于高违规度业务群组,出现频次异常次数达到第四设定数目条件的SP业务属于中违规度业务群组,出现频次异常次数达到第五设定数目条件的SP业务属于低违规度业务群组。根据所述异常SP业务违规严重程度的不同,确定所述SP异常业务所属的业务群组。In the specific implementation, the business group includes a high-violation business group, a medium-violation business group, and a low-violation business group, wherein, the SP business whose occurrence frequency abnormality reaches the third set number condition belongs to the high violation The SP business whose occurrence frequency of abnormal frequency reaches the fourth set number condition belongs to the medium violation degree business group, and the SP business whose frequency abnormality frequency reaches the fifth set number condition belongs to the low violation degree business group. Determine the service group to which the SP abnormal service belongs according to the severity of violations of the abnormal SP service.

所述第二控制单元292,用于采用确定的业务群组所对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权控制。The second control unit 292 is configured to perform authentication control on the SP service ordered by the user by adopting the service group secondary confirmation policy corresponding to the determined service group.

具体实现中,对应的业务群组二次确认策略请参见图4所示。In specific implementation, please refer to Figure 4 for the corresponding business group secondary confirmation policy.

所述高违规度业务群组对应的业务群组二次确认策略:二次确认规则为每次点播均二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认。其中,复杂问题由相应的题库提供,复杂问题是指其答案唯一的问题,例如:“2加3等于几?” 答案为“5”,用户输入正确答案方可确认点播。随机码由相应的题库提供。随机码一般为一个字符串,其确认方式可以为,例如:“请输入字符串‘ahgt21’以确认点播”,用户输入“ahgt21”方可确认点播。The business group secondary confirmation strategy corresponding to the high-violation service group: the secondary confirmation rule is a secondary confirmation for each order, and the secondary confirmation mode is a complex question secondary confirmation or a random code secondary confirmation. Among them, the complex question is provided by the corresponding question bank, and the complex question refers to the question whose answer is unique, for example: "What is 2 plus 3?" The random code is provided by the corresponding question bank. The random code is generally a character string, and its confirmation method can be, for example: "Please enter the character string 'ahgt21' to confirm the order", and the user can input "ahgt21" to confirm the order.

所述中违规度业务群组对应的业务群组二次确认策略:二次确认规则为首次点播二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认。其中,复杂问题由相应的题库提供,复杂问题是指其答案唯一的问题,例如:“2加3等于几?” 答案为“5”,用户输入正确答案方可确认点播。随机码由相应的题库提供。随机码一般为一个字符串,其确认方式可以为,例如:“请输入字符串‘ahgt21’以确认点播”,用户输入“ahgt21”方可确认点播。The business group secondary confirmation strategy corresponding to the business group with a medium degree of violation: the secondary confirmation rule is the secondary confirmation of the first on-demand broadcast, and the secondary confirmation mode is the secondary confirmation of complex questions or the secondary confirmation of random codes. Among them, the complex question is provided by the corresponding question bank, and the complex question refers to the question whose answer is unique, for example: "What is 2 plus 3?" The random code is provided by the corresponding question bank. The random code is generally a character string, and its confirmation method can be, for example: "Please enter the character string 'ahgt21' to confirm the order", and the user can input "ahgt21" to confirm the order.

所述低违规度业务群组对应的业务群组二次确认策略:二次确认规则为首次点播二次确认,二次确认模式为简单问题二次确认。其中简单问题由相应的题库提供,简单问题是指其答案有很多个的问题,例如:“请输入10至20之间的任意数字”,用户可以输入“11,12,……,19”中的任意一个,即可确认点播。The business group secondary confirmation strategy corresponding to the low-violation business group: the secondary confirmation rule is the secondary confirmation of the first on-demand program, and the secondary confirmation mode is the secondary confirmation of simple questions. Among them, simple questions are provided by the corresponding question bank. Simple questions refer to questions with many answers, for example: "Please enter any number between 10 and 20", the user can enter "11,12,...,19" Any one of the , you can confirm on-demand.

本发明实施例具有以下技术效果:Embodiments of the present invention have the following technical effects:

1、通过稽核判断,统计分析用户上行使用业务的日志数据,能够更加准确的发现终端嫌疑存在违规内置行为的异常用户和异常SP业务,进而对其进行分组,针对不同群组设置不同控制策略,实现精细化管理。1. Through audit and judgment, statistical analysis of log data of users' uplink services can more accurately discover abnormal users and abnormal SP services suspected of having illegal built-in behaviors in the terminal, and then group them, and set different control strategies for different groups. Realize refined management.

2、针对不同的用户群组和业务群组,采用不同的用户群组二次确认控制策略和业务群组二次确认策略,能够实现有针对性的管理操作,使终端违规内置不能轻易的替用户完成二次确认,更加有效的减少终端违规吸费的情况,降低用户对违规吸费的投诉量,保障用户利益免受侵害。2. For different user groups and business groups, different user group secondary confirmation control strategies and business group secondary confirmation strategies can be used to achieve targeted management operations, so that the built-in terminal violations cannot be easily replaced. The user completes the second confirmation, which can more effectively reduce the situation of terminal illegal fee collection, reduce the number of user complaints about illegal fee collection, and protect the interests of users from infringement.

相应的,本发明还提供了一种违规终端内置行为处理系统。图10为本发明的违规终端内置行为处理系统的一实施例结构示意图,如图10所示,所述系统1包括稽核系统11和业务管理平台12。Correspondingly, the present invention also provides a built-in behavior processing system for illegal terminals. FIG. 10 is a schematic structural diagram of an embodiment of a built-in behavior processing system for illegal terminals according to the present invention. As shown in FIG. 10 , the system 1 includes an audit system 11 and a business management platform 12 .

所述稽核系统11,所述稽核系统用于稽核业务管理平台上终端嫌疑存在违规内置行为的异常用户和异常SP业务,并根据预设条件,将所述异常用户和异常SP业务分为不同的用户群组和业务群组,并针对不同的用户群组和业务群组设定不同的用户群组二次确认策略和业务群组二次确认策略。The audit system 11, the audit system is used to audit abnormal users and abnormal SP services that are suspected of having illegal built-in behaviors on the business management platform, and divide the abnormal users and abnormal SP services into different categories according to preset conditions. User groups and business groups, and set different user group secondary confirmation policies and business group secondary confirmation policies for different user groups and business groups.

具体的,请参见图11,所述稽核系统11包括:采集单元111、抽取单元112、统计分析单元113以及配置单元114。Specifically, please refer to FIG. 11 , the audit system 11 includes: a collection unit 111 , an extraction unit 112 , a statistical analysis unit 113 and a configuration unit 114 .

所述采集单元111,用于采集业务管理平台用户的行为日志数据。The collection unit 111 is configured to collect behavior log data of service management platform users.

所述抽取单元112,用于抽取用户上行使用业务的日志数据。The extracting unit 112 is configured to extract log data of user uplink services.

所述统计分析单元113,用于按用户终端号码分别统计其每日频次异常的次数,确定异常用户,并按照预设条件,将其列入不同的用户群组;以及将所述异常用户的上行使用业务的日志数据,按照SP业务分别统计其成功上行指标,确定异常SP业务,并按照预设条件,将所述异常SP业务列入不同的业务群组。The statistical analysis unit 113 is used to count the number of abnormal daily frequency according to the user terminal number, determine abnormal users, and list them into different user groups according to preset conditions; According to the log data of the uplink service, the successful uplink indicators are counted according to the SP service, and the abnormal SP service is determined, and the abnormal SP service is included in different service groups according to the preset conditions.

所述配置单元114,用于针对不同的用户群组和业务群组设定不同的用户群组二次确认策略和业务群组二次确认策略。The configuration unit 114 is configured to set different user group secondary confirmation policies and service group secondary confirmation policies for different user groups and service groups.

所述业务管理平台12,用于在收到用户点播的SP业务请求后,判断所述用户为异常用户时,进行用户群组鉴权,然后采用相应的用户群组二次确认策略对用户点播的SP业务进行鉴权控制;或者收到用户点播的SP业务请求后,判断所述用户不是异常用户,再判断所述点播的SP业务是异常SP业务时,进行业务群组鉴权,然后采用相应的业务群组二次确认策略对用户点播的SP业务进行鉴权控制。The service management platform 12 is used to perform user group authentication when judging that the user is an abnormal user after receiving the SP service request requested by the user, and then adopts the corresponding user group secondary confirmation strategy to order the user or after receiving the SP service request ordered by the user, it is judged that the user is not an abnormal user, and then when it is judged that the SP service requested by the user is an abnormal SP service, the service group authentication is performed, and then the The corresponding service group secondary confirmation policy performs authentication control on the SP service requested by the user.

其中,所述业务管理平台针对不同的用户群组二次确认策略和业务群组二次确认策略,设有不同的题库,包括随机码题库,复杂问题题库以及简单问题题库,所述题库也可以由稽核系统提供给所述业务管理平台。Wherein, the business management platform is provided with different question banks for different user group secondary confirmation strategies and business group secondary confirmation strategies, including random code question banks, complex question question banks and simple question question banks, and the question bank can also be Provided to the business management platform by the audit system.

具体的,请参见图12,所述业务管理平台12包括:用户鉴权模块121和业务鉴权模块122。Specifically, referring to FIG. 12 , the service management platform 12 includes: a user authentication module 121 and a service authentication module 122 .

用户鉴权模块121,用于判断点播SP业务的用户是否为异常用户,如是异常用户,则判断其所属的用户群组,并采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权。User authentication module 121 is used to judge whether the user of SP service on demand is an abnormal user, and if it is an abnormal user, then judge the user group it belongs to, and adopt the user group secondary confirmation strategy corresponding to the user group determined to The SP service ordered by the user is authenticated.

业务鉴权模块122,用于判断用户点播的SP业务是否为异常SP业务,如是异常SP业务,则进一步判断其所属的业务群组,并采用确定的业务群组所对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权。Service authentication module 122, is used for judging whether the SP service of user order is abnormal SP service, if it is abnormal SP service, then further judge the service group to which it belongs, and adopt the service group corresponding to the service group determined for the second time The confirmation policy authenticates the SP service ordered by the user.

进一步的,请参见图13,为用户鉴权模块121的结构示意图。所述用户鉴权模块121包括:判断单元1211,查找单元1212以及鉴权单元1213。Further, please refer to FIG. 13 , which is a schematic structural diagram of the user authentication module 121 . The user authentication module 121 includes: a judgment unit 1211 , a search unit 1212 and an authentication unit 1213 .

所述判断单元1211,用于判断点播SP业务的用户是否为异常用户。The judging unit 1211 is configured to judge whether the user of the on-demand SP service is an abnormal user.

所述查找单元1212,用于查找所述判断单元判定的异常用户所属的用户群组。The searching unit 1212 is configured to search for the user group to which the abnormal user determined by the judging unit belongs.

所述鉴权单元1213,用于采用所述查找单元查找到的用户群组对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权。The authentication unit 1213 is configured to use the user group secondary confirmation policy corresponding to the user group found by the search unit to authenticate the SP service ordered by the user.

同样的,所述业务鉴权模块122包括:判断单元,查找单元以及鉴权单元。Likewise, the service authentication module 122 includes: a judging unit, a searching unit and an authenticating unit.

所述判断单元,用于判断用户点播的SP业务的是否为异常SP业务。The judging unit is used to judge whether the SP service ordered by the user is an abnormal SP service.

所述查找单元,用于查找所述判断单元判定的异常业务所属的业务群组。The searching unit is configured to search for the business group to which the abnormal business determined by the judging unit belongs.

所述鉴权单元,用于采用所述查找单元查找到的业务群组对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权。The authentication unit is configured to authenticate the SP service ordered by the user by using the service group secondary confirmation policy corresponding to the service group found by the search unit.

实施本发明实施例,具有如下有益效果:Implementing the embodiment of the present invention has the following beneficial effects:

1、通过稽核判断,统计分析用户上行使用业务的日志数据,能够更加准确的发现终端嫌疑存在违规内置行为的异常用户和异常SP业务,进而对其进行分组,针对不同群组设置不同控制策略,实现精细化管理。1. Through audit and judgment, statistical analysis of log data of users' uplink services can more accurately discover abnormal users and abnormal SP services suspected of having illegal built-in behaviors in the terminal, and then group them, and set different control strategies for different groups. Realize refined management.

2、针对不同的用户群组和业务群组,采用不同的二次确认控制策略,能够实现有针对性的管理操作,使终端违规内置不能轻易的替用户完成二次确认,更加有效的减少终端违规吸费的情况,降低用户对违规吸费的投诉量,保障用户利益免受侵害。2. For different user groups and business groups, different secondary confirmation control strategies can be used to achieve targeted management operations, so that the built-in terminal violations cannot easily complete the secondary confirmation for users, and more effectively reduce the number of terminals In the case of illegal fees, reduce the number of complaints from users about illegal fees, and protect the interests of users from infringement.

本领域普通技术人员可以理解实现上述实施例方法中的全部或部分流程,是可以通过计算机程序来指令相关的硬件来完成,所述的程序可存储于一计算机可读取存储介质中,该程序在执行时,可包括如上述各方法的实施例的流程。其中,所述的存储介质可为磁碟、光盘、只读存储记忆体(Read-Only Memory,ROM)或随机存储记忆体(Random AccessMemory,RAM)等。Those of ordinary skill in the art can understand that all or part of the processes in the methods of the above embodiments can be implemented through computer programs to instruct related hardware, and the programs can be stored in a computer-readable storage medium. During execution, it may include the processes of the embodiments of the above-mentioned methods. Wherein, the storage medium may be a magnetic disk, an optical disk, a read-only memory (Read-Only Memory, ROM) or a random access memory (Random Access Memory, RAM), and the like.

以上所揭露的仅为本发明较佳实施例而已,当然不能以此来限定本发明之权利范围,本领域普通技术人员可以理解实现上述实施例的全部或部分流程,并依本发明权利要求所作的等同变化,仍属于发明所涵盖的范围。What is disclosed above is only a preferred embodiment of the present invention, and certainly cannot limit the scope of rights of the present invention with this. Those of ordinary skill in the art can understand the whole or part of the process of realizing the above-mentioned embodiment, and make according to the claims of the present invention The equivalent changes still belong to the scope covered by the invention.

Claims (18)

1.一种违规终端内置行为处理方法,其特征在于,包括:1. A method for processing built-in behaviors of illegal terminals, characterized in that it comprises: 采集业务管理平台全部用户的行为日志数据;Collect behavior log data of all users of the business management platform; 抽取所述用户上行使用业务的日志数据;Extracting the log data of the user's uplink service; 按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常,所述频次是指用户通过短信通道上行使用SP业务的时间间隔;Calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within the preset value range. The time interval for uplink using SP services; 判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;Judging whether the abnormal frequency of the user terminal number in a certain period exceeds the set number, if so, it is judged as an abnormal user; 对所述异常用户点播SP业务的操作进行用户鉴权控制;Perform user authentication control on the operation of ordering SP services by the abnormal user; 对所述异常用户点播SP业务的操作进行用户鉴权控制的步骤包括:The step of carrying out user authentication control on the operation of the SP service requested by the abnormal user includes: 对所述异常用户进行用户群组鉴权,确定其所属的用户群组;performing user group authentication on the abnormal user, and determining the user group to which it belongs; 采用确定的用户群组所对应的用户群组二次确认策略对所述异常用户点播的SP业务进行鉴权控制。The user group secondary confirmation policy corresponding to the determined user group is used to perform authentication control on the SP service ordered by the abnormal user. 2.根据权利要求1所述的方法,其特征在于,对所述异常用户进行用户群组鉴权,确定其所属的用户群组的步骤,具体包括:2. The method according to claim 1, wherein the step of performing user group authentication on the abnormal user, and determining the user group to which it belongs, specifically includes: 根据所述异常用户对违规收费的投诉量或者投诉频率,确定所述异常用户所属的用户群组。The user group to which the abnormal user belongs is determined according to the amount or frequency of complaints of the abnormal user about the illegal charges. 3.根据权利要求2所述的方法,其特征在于,所述用户群组包括高敏感度用户群组和低敏感度用户群组,其中,对违规收费的投诉量或者投诉频率达到第一设定数目条件的用户属于高敏感度用户群组,对违规收费的投诉量或者投诉频率达到第二设定数目条件的用户属于低敏感度用户群组。3. The method according to claim 2, wherein the user group includes a high-sensitivity user group and a low-sensitivity user group, wherein the amount of complaints or the frequency of complaints to illegal charges reaches a first setting A certain number of users belongs to the high-sensitivity user group, and users whose complaint volume or frequency of complaints about illegal charges reach the second set number belong to the low-sensitivity user group. 4.根据权利要求3所述的方法,其特征在于,所述高敏感度用户群组设定的对应用户群组二次确认策略为:随机码二次确认或者复杂问题二次确认;4. The method according to claim 3, wherein the secondary confirmation strategy for the corresponding user group set by the high-sensitivity user group is: secondary confirmation of random code or secondary confirmation of complicated questions; 所述低敏感度用户群组设定的对应用户群组二次确认策略为:简单问题二次确认。The corresponding user group secondary confirmation policy set by the low-sensitivity user group is: simple question secondary confirmation. 5.一种违规终端内置行为处理方法,其特征在于,包括:5. A method for processing built-in behaviors of illegal terminals, comprising: 采集业务管理平台全部用户的行为日志数据;Collect behavior log data of all users of the business management platform; 抽取所述用户上行使用业务的日志数据;Extracting the log data of the user's uplink service; 按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常,所述频次是指用户通过短信通道上行使用SP业务的时间间隔;Calculate the daily uplink frequency of the user terminal number according to the user terminal number, and judge whether the frequency is within the preset value range. The time interval for uplink using SP services; 判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;Judging whether the abnormal frequency of the user terminal number in a certain period exceeds the set number, if so, it is judged as an abnormal user; 抽取所述异常用户在一定周期内成功上行的访问的SP业务列表;Extracting the SP service list of the abnormal user's successful uplink access within a certain period; 按所述业务列表中的业务统计相应的成功上行指标;According to the business statistics in the business list, the corresponding successful uplink indicators are counted; 判断所述成功上行指标是否超过设定数目,如是,则判定该业务为异常SP业务;Judging whether the successful uplink index exceeds the set number, if so, then judging that the service is an abnormal SP service; 对用户点播所述异常SP业务的操作进行业务鉴权控制;Perform service authentication control on the user's ordering operation of the abnormal SP service; 所述成功上行指标包括异常用户数、异常用户成功上行数以及异常用户成功上行占比中的任意一种或多种。The successful uplink indicator includes any one or more of the number of abnormal users, the number of successful uplinks by abnormal users, and the proportion of successful uplinks by abnormal users. 6.根据权利要求5所述的方法,其特征在于,对用户点播所述异常SP业务的操作进行业务鉴权控制的步骤包括:6. The method according to claim 5, characterized in that, the step of performing service authentication control on the operation of user ordering the abnormal SP service comprises: 对所述异常SP业务进行业务群组鉴权,确定其所属业务群组;Perform service group authentication on the abnormal SP service, and determine the service group to which it belongs; 采用确定的业务群组所对应的业务群组二次确认策略对所述SP业务进行鉴权控制。The authentication control of the SP service is performed by using the service group secondary confirmation policy corresponding to the determined service group. 7.根据权利要求6所述的方法,其特征在于,如果是异常SP业务,则对所述SP业务进行业务群组鉴权,确定其所属业务群组的步骤,具体包括:7. The method according to claim 6, wherein, if it is an abnormal SP service, the step of performing service group authentication on the SP service, and determining the service group to which it belongs, specifically includes: 根据所述异常SP业务违规严重程度的不同,确定所述SP异常业务所属的业务群组。Determine the service group to which the SP abnormal service belongs according to the severity of violations of the abnormal SP service. 8.根据权利要求7所述的方法,其特征在于,所述业务群组包括高违规度业务群组、中违规度业务群组以及低违规度业务群组,其中,出现频次异常次数达到第三设定数目条件的SP业务属于高违规度业务群组,出现频次异常次数达到第四设定数目条件的SP业务属于中违规度业务群组,出现频次异常次数达到第五设定数目条件的SP业务属于低违规度业务群组,所述频次是指用户通过短信通道上行使用SP业务的时间间隔。8. The method according to claim 7, wherein the business groups include a high violation degree business group, a medium violation degree business group, and a low violation degree business group, wherein the frequency of abnormal occurrences reaches the second 3. The SP business with the set number of conditions belongs to the business group with a high degree of violation, and the SP business with the frequency of abnormal occurrences reaching the fourth set number of conditions belongs to the business group with a medium degree of violation, and the frequency of abnormalities with the number of occurrences reaches the fifth set number of conditions. The SP service belongs to the low-violation service group, and the frequency refers to the time interval for users to use the SP service uplink through the SMS channel. 9.根据权利要求8所述的方法,其特征在于:9. The method of claim 8, wherein: 所述高违规度业务群组设定的对应业务群组二次确认策略为:二次确认规则为每次点播均二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认;The secondary confirmation policy of the corresponding business group set by the high-violation business group is: the secondary confirmation rule is a secondary confirmation for each order, and the secondary confirmation mode is a secondary confirmation of complex issues or a secondary confirmation of random codes ; 所述中违规度业务群组设定的对应业务群组二次确认策略为:二次确认规则为首次点播二次确认,二次确认模式为复杂问题二次确认或者随机码二次确认;The secondary confirmation strategy of the corresponding business group set by the business group with a medium degree of violation is: the secondary confirmation rule is the secondary confirmation of the first on-demand broadcast, and the secondary confirmation mode is the secondary confirmation of complex issues or the secondary confirmation of random codes; 所述低违规度业务群组设定的对应业务群组二次确认策略为:二次确认规则为首次点播二次确认,二次确认模式为简单问题二次确认。The corresponding business group secondary confirmation strategy set by the low-violation business group is: the secondary confirmation rule is the secondary confirmation of the first on-demand broadcast, and the secondary confirmation mode is the secondary confirmation of simple questions. 10.一种违规终端内置行为处理装置,其特征在于,包括:10. A built-in behavior processing device for illegal terminals, characterized in that it includes: 采集单元,用于采集业务管理平台全部用户的行为日志数据;The collection unit is used to collect behavior log data of all users of the business management platform; 第一抽取单元,用于抽取所述用户上行使用业务的日志数据;The first extraction unit is used to extract the log data of the user's uplink service; 第一统计单元,用于按用户终端号码计算每日该用户终端号码每次上行的频次,并判断所述频次是否在预先设定的数值范围内,如是,则计1次频次异常,所述频次是指用户通过短信通道上行使用SP业务的时间间隔;The first statistical unit is used to calculate the frequency of each uplink of the user terminal number every day according to the user terminal number, and judge whether the frequency is within a preset value range, and if so, count 1 frequency abnormality, said Frequency refers to the time interval for users to use SP services uplink through the SMS channel; 第一判断单元,用于判断该用户终端号码在一定周期内的频次异常次数是否超过设定数目,如是,则判定为异常用户;The first judging unit is used to judge whether the abnormal frequency of the user terminal number in a certain period exceeds the set number, and if so, it is judged as an abnormal user; 用户鉴权控制单元,用于对所述异常用户点播SP业务的操作进行用户鉴权控制;A user authentication control unit, configured to perform user authentication control on the operation of ordering SP services by the abnormal user; 所述用户鉴权控制单元进一步包括:The user authentication control unit further includes: 第一确定单元,用于对所述用户进行用户群组鉴权,确定其所属的用户群组;The first determining unit is configured to perform user group authentication on the user, and determine the user group to which the user belongs; 第一控制单元,用于采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权控制。The first control unit is configured to use the user group secondary confirmation policy corresponding to the determined user group to perform authentication control on the SP service ordered by the user. 11.如权利要求10所述的装置,其特征在于,所述装置进一步包括:11. The device of claim 10, further comprising: 第二抽取单元,用于抽取所述异常用户在一定周期内成功上行的访问的SP业务列表;The second extraction unit is used to extract the SP service list of the abnormal user's successful uplink access within a certain period; 第二统计单元,用于按所述业务列表中的业务统计相应的成功上行指标;The second statistical unit is used to count the corresponding successful uplink indicators according to the services in the service list; 第二判断单元,用于判断所述成功上行指标是否超过设定数目,如是,则判定为异常SP业务;The second judging unit is used to judge whether the successful uplink index exceeds the set number, and if so, it is judged as an abnormal SP service; 业务鉴权控制单元,用于对用户点播所述异常SP业务的操作进行业务鉴权控制。A service authentication control unit, configured to perform service authentication control on the user's ordering operation of the abnormal SP service. 12.如权利要求11所述的装置,其特征在于,所述业务鉴权控制单元进一步包括:12. The device according to claim 11, wherein the service authentication control unit further comprises: 第二确定单元,用于对所述异常SP业务进行业务群组鉴权,确定其所属的业务群组;The second determining unit is configured to perform service group authentication on the abnormal SP service, and determine the service group to which it belongs; 第二控制单元,用于采用确定的业务群组所对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权控制。The second control unit is configured to perform authentication control on the SP service ordered by the user by adopting the service group secondary confirmation policy corresponding to the determined service group. 13.一种违规终端内置行为处理系统,其特征在于,所述系统包括稽核系统和业务管理平台;13. A built-in behavior processing system for illegal terminals, characterized in that the system includes an audit system and a business management platform; 所述稽核系统用于稽核业务管理平台上终端嫌疑存在违规内置行为的异常用户和异常SP业务,并根据预设条件,将所述异常用户和异常SP业务分为不同的用户群组和业务群组,并针对不同的用户群组和业务群组设定不同的用户群组二次确认策略和业务群组二次确认策略;The audit system is used to audit abnormal users and abnormal SP services suspected of having illegal built-in behaviors on the business management platform, and divide the abnormal users and abnormal SP services into different user groups and business groups according to preset conditions Group, and set different user group secondary confirmation policies and business group secondary confirmation policies for different user groups and business groups; 所述业务管理平台用于在收到用户点播的SP业务请求后,判断所述用户为异常用户时,进行用户群组鉴权,然后采用相应的用户群组二次确认策略对用户点播的SP业务进行鉴权控制;或者收到用户点播的SP业务请求后,判断所述用户不是异常用户,再判断所述点播的SP业务是异常SP业务时,进行业务群组鉴权,然后采用相应的业务群组二次确认策略对用户点播的SP业务进行鉴权控制。The service management platform is used to perform user group authentication when judging that the user is an abnormal user after receiving the SP service request requested by the user, and then adopts the corresponding user group secondary confirmation strategy to check the SP service request requested by the user. After receiving the SP service request ordered by the user, it is judged that the user is not an abnormal user, and then when it is judged that the SP service requested by the user is an abnormal SP service, the service group authentication is performed, and then the corresponding The secondary confirmation policy of the service group performs authentication control on the SP service requested by the user. 14.如权利要求13所述的系统,其特征在于,所述稽核系统包括:14. The system according to claim 13, wherein the audit system comprises: 采集单元,用于采集业务管理平台用户的行为日志数据;The collection unit is used to collect behavior log data of users of the business management platform; 抽取单元,用于抽取用户上行使用业务的日志数据;The extraction unit is used to extract the log data of the user's uplink service; 统计分析单元,用于按用户终端号码分别统计其每日频次异常的次数,确定异常用户,并按照预设条件,将其列入不同的用户群组,所述频次是指用户通过短信通道上行使用SP业务的时间间隔;以及将所述异常用户的上行使用业务的日志数据,按照SP业务分别统计其成功上行指标,确定异常SP业务,并按照预设条件,将所述异常SP业务列入不同的业务群组;The statistical analysis unit is used to count the number of abnormal daily frequency according to the user terminal number, determine the abnormal user, and put them into different user groups according to the preset conditions. The time interval for using the SP service; and counting the log data of the uplink service of the abnormal user according to the successful uplink index of the SP service, determining the abnormal SP service, and listing the abnormal SP service according to the preset conditions different business groups; 配置单元,用于针对不同的用户群组和业务群组设定不同的用户群组二次确认策略和业务群组二次确认策略。The configuration unit is used for setting different user group secondary confirmation policies and service group secondary confirmation policies for different user groups and service groups. 15.如权利要求13所述的系统,其特征在于,所述业务管理平台包括:15. The system according to claim 13, wherein the service management platform comprises: 用户鉴权模块,用于判断点播SP业务的用户是否为异常用户,如是异常用户,则判断其所属的用户群组,并采用确定的用户群组所对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权;The user authentication module is used to judge whether the user of the on-demand SP service is an abnormal user, and if it is an abnormal user, then judge the user group it belongs to, and adopt the user group secondary confirmation strategy corresponding to the determined user group to verify all user groups. authenticate the SP service requested by the user; 业务鉴权模块,用于判断用户点播的SP业务是否为异常SP业务,如是异常SP业务,则进一步判断其所属的业务群组,并采用确定的业务群组所对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权。The service authentication module is used to judge whether the SP service ordered by the user is an abnormal SP service, and if it is an abnormal SP service, further judge the service group it belongs to, and use the service group corresponding to the determined service group for secondary confirmation The policy authenticates the SP service ordered by the user. 16.如权利要求15所述的系统,其特征在于,所述用户鉴权模块包括:16. The system according to claim 15, wherein the user authentication module comprises: 判断单元,用于判断点播SP业务的用户是否为异常用户;Judging unit, for judging whether the user of the SP service on demand is an abnormal user; 查找单元,用于查找所述判断单元判定的异常用户所属的用户群组;a search unit, configured to search for the user group to which the abnormal user determined by the determination unit belongs; 鉴权单元,用于采用所述查找单元查找到的用户群组对应的用户群组二次确认策略对所述用户点播的SP业务进行鉴权。The authentication unit is configured to use the user group secondary confirmation policy corresponding to the user group found by the search unit to authenticate the SP service ordered by the user. 17.如权利要求15所述的系统,其特征在于,所述业务鉴权模块包括:17. The system according to claim 15, wherein the service authentication module comprises: 判断单元,用于判断用户点播的SP业务是否为异常SP业务;Judging unit, for judging whether the SP service requested by the user is an abnormal SP service; 查找单元,用于查找所述判断单元判定的异常业务所属的业务群组;a search unit, configured to search for the service group to which the abnormal service determined by the determination unit belongs; 鉴权单元,用于采用所述查找单元查找到的业务群组对应的业务群组二次确认策略对所述用户点播的SP业务进行鉴权。The authentication unit is configured to use the service group secondary confirmation policy corresponding to the service group found by the search unit to authenticate the SP service ordered by the user. 18.如权利要求15所述的系统,其特征在于,所述业务管理平台针对不同的用户群组二次确认策略和业务群组二次确认策略,设有不同的题库,包括随机码题库,复杂问题题库以及简单问题题库,所述题库由稽核系统提供给所述业务管理平台。18. The system according to claim 15, wherein the business management platform is provided with different question banks for different user group secondary confirmation strategies and business group secondary confirmation strategies, including random code question banks, A question bank for complex questions and a question bank for simple questions, the question bank is provided to the business management platform by the audit system.
CN201110218380.2A 2011-08-01 2011-08-01 A kind of violation terminal built-in behavior processing method, apparatus and system Active CN102917334B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110218380.2A CN102917334B (en) 2011-08-01 2011-08-01 A kind of violation terminal built-in behavior processing method, apparatus and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110218380.2A CN102917334B (en) 2011-08-01 2011-08-01 A kind of violation terminal built-in behavior processing method, apparatus and system

Publications (2)

Publication Number Publication Date
CN102917334A CN102917334A (en) 2013-02-06
CN102917334B true CN102917334B (en) 2018-02-23

Family

ID=47615531

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110218380.2A Active CN102917334B (en) 2011-08-01 2011-08-01 A kind of violation terminal built-in behavior processing method, apparatus and system

Country Status (1)

Country Link
CN (1) CN102917334B (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104519469A (en) * 2013-10-08 2015-04-15 华为技术有限公司 SMS (short message service) charging behavior detection method, device and terminal
CN105636076B (en) * 2014-11-07 2019-06-07 中国移动通信集团四川有限公司 A kind of auditing method, device and the equipment of the behavior of violation terminal built-in
CN105550348A (en) * 2015-12-25 2016-05-04 时趣互动(北京)科技有限公司 Cheating user decision method and device based on on-line behavior data of user
CN108668306B (en) * 2017-03-28 2021-10-22 江苏北弓智能科技有限公司 Data acquisition system with built-in mobile operating system

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1523923A (en) * 2003-02-17 2004-08-25 �й��ƶ�ͨ�ż��Ź�˾ Method for security authentication of mobile terminal user identity
CN101203052A (en) * 2007-12-24 2008-06-18 华为技术有限公司 A method and device for preventing malicious service requests
CN101207487A (en) * 2006-12-21 2008-06-25 国际商业机器公司 User authentication system and method for detecting and controlling fraudulent login behavior
CN102045319A (en) * 2009-10-21 2011-05-04 中国移动通信集团山东有限公司 Method and device for detecting SQL (Structured Query Language) injection attack

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1523923A (en) * 2003-02-17 2004-08-25 �й��ƶ�ͨ�ż��Ź�˾ Method for security authentication of mobile terminal user identity
CN101207487A (en) * 2006-12-21 2008-06-25 国际商业机器公司 User authentication system and method for detecting and controlling fraudulent login behavior
CN101203052A (en) * 2007-12-24 2008-06-18 华为技术有限公司 A method and device for preventing malicious service requests
CN102045319A (en) * 2009-10-21 2011-05-04 中国移动通信集团山东有限公司 Method and device for detecting SQL (Structured Query Language) injection attack

Also Published As

Publication number Publication date
CN102917334A (en) 2013-02-06

Similar Documents

Publication Publication Date Title
CN104933207B (en) The acquisition methods and system of user behavior data in application program
CN104376266B (en) The determination method and device of application software level of security
KR101109434B1 (en) Billing system with authenticated wireless device transaction event data
CN108040295B (en) Public cutting method, server, user side and public cutting system
US9137664B2 (en) Application logging interface for a mobile device
CN102624677B (en) Method and server for monitoring network user behavior
CN108711006B (en) Income management method, management node, system and storage equipment
CN102917334B (en) A kind of violation terminal built-in behavior processing method, apparatus and system
CN109857484A (en) For the processing method and system of interface call request
Nguyen et al. Blockroam: Blockchain-based roaming management system for future mobile networks
CN108366176A (en) A kind of charging method of terminal applies, apparatus and system
US20110203002A1 (en) Method for protecting personal information in audience measurement of digital broadcasting system
CN107509190A (en) A short message monitoring method, device and monitoring center
CN102917352B (en) A kind of violation terminal built-in behavior processing method, apparatus and system
CN105405008B (en) Fee deduction method and device
CN102917335B (en) A kind of violation terminal built-in behavior processing method, apparatus and system
US20120303487A1 (en) Online stream honey pot capture
CN107872491A (en) A kind of data processing method and device
CN102958055B (en) A kind of discrimination method of illegal callback service and system
WO2014177098A1 (en) Application software online payment processing method and system
CN113922977A (en) Anti-cheating method and system based on mobile terminal
CN102149064B (en) Charging method for authenticating, mobile terminal and charging authentication server
CN113032787A (en) System vulnerability detection method and device
KR101607402B1 (en) Moblie Telecommunication Subscriber's Fraud Detection Method and System
CN112217944A (en) Online ticket processing method, device, equipment and storage medium

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant