CN103150512B - 一种蜜罐系统和运用该系统检测木马的方法 - Google Patents
一种蜜罐系统和运用该系统检测木马的方法 Download PDFInfo
- Publication number
- CN103150512B CN103150512B CN201310086635.3A CN201310086635A CN103150512B CN 103150512 B CN103150512 B CN 103150512B CN 201310086635 A CN201310086635 A CN 201310086635A CN 103150512 B CN103150512 B CN 103150512B
- Authority
- CN
- China
- Prior art keywords
- module
- rule
- computing machine
- conduct
- file
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Landscapes
- Computer And Data Communications (AREA)
- Information Transfer Between Computers (AREA)
Abstract
Description
Claims (6)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201310086635.3A CN103150512B (zh) | 2013-03-18 | 2013-03-18 | 一种蜜罐系统和运用该系统检测木马的方法 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201310086635.3A CN103150512B (zh) | 2013-03-18 | 2013-03-18 | 一种蜜罐系统和运用该系统检测木马的方法 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN103150512A CN103150512A (zh) | 2013-06-12 |
CN103150512B true CN103150512B (zh) | 2015-10-21 |
Family
ID=48548584
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201310086635.3A Active CN103150512B (zh) | 2013-03-18 | 2013-03-18 | 一种蜜罐系统和运用该系统检测木马的方法 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN103150512B (zh) |
Families Citing this family (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103763324A (zh) * | 2014-01-23 | 2014-04-30 | 珠海市君天电子科技有限公司 | 一种病毒程序传播设备监控的方法以及服务器 |
CN105468969B (zh) * | 2015-11-19 | 2019-02-01 | 中科创达软件股份有限公司 | 一种提升杀毒应用程序安全性的方法及系统 |
Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2008043976A1 (en) * | 2006-10-10 | 2008-04-17 | Umu Limited | Virus detection method |
CN101350822A (zh) * | 2008-09-08 | 2009-01-21 | 南开大学 | 一种Internet恶意代码的发现和追踪方法 |
CN101350054A (zh) * | 2007-10-15 | 2009-01-21 | 北京瑞星国际软件有限公司 | 计算机有害程序自动防护方法及装置 |
CN101621511A (zh) * | 2009-06-09 | 2010-01-06 | 北京安天电子设备有限公司 | 一种多层次的无本地病毒库检测方法及系统 |
JP2010092174A (ja) * | 2008-10-06 | 2010-04-22 | Nippon Telegr & Teleph Corp <Ntt> | 不正検知方法、不正検知装置、不正検知プログラムおよび情報処理システム |
CN201477598U (zh) * | 2009-09-01 | 2010-05-19 | 北京鼎普科技股份有限公司 | 终端木马监测装置 |
US8321942B1 (en) * | 2009-03-12 | 2012-11-27 | Symantec Corporation | Selecting malware signatures based on malware diversity |
Family Cites Families (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US9055093B2 (en) * | 2005-10-21 | 2015-06-09 | Kevin R. Borders | Method, system and computer program product for detecting at least one of security threats and undesirable computer files |
-
2013
- 2013-03-18 CN CN201310086635.3A patent/CN103150512B/zh active Active
Patent Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2008043976A1 (en) * | 2006-10-10 | 2008-04-17 | Umu Limited | Virus detection method |
CN101350054A (zh) * | 2007-10-15 | 2009-01-21 | 北京瑞星国际软件有限公司 | 计算机有害程序自动防护方法及装置 |
CN101350822A (zh) * | 2008-09-08 | 2009-01-21 | 南开大学 | 一种Internet恶意代码的发现和追踪方法 |
JP2010092174A (ja) * | 2008-10-06 | 2010-04-22 | Nippon Telegr & Teleph Corp <Ntt> | 不正検知方法、不正検知装置、不正検知プログラムおよび情報処理システム |
US8321942B1 (en) * | 2009-03-12 | 2012-11-27 | Symantec Corporation | Selecting malware signatures based on malware diversity |
CN101621511A (zh) * | 2009-06-09 | 2010-01-06 | 北京安天电子设备有限公司 | 一种多层次的无本地病毒库检测方法及系统 |
CN201477598U (zh) * | 2009-09-01 | 2010-05-19 | 北京鼎普科技股份有限公司 | 终端木马监测装置 |
Non-Patent Citations (4)
Title |
---|
基于HoneyClient蜜罐的挂马检测;陈凌等;《信息安全与通信保密》;20100531;全文 * |
基于虚拟蜜罐的入侵特征码生成;唐新玉等;《电脑知识与技术》;20080831;全文 * |
基于蜜罐的入侵检测系统模型研究;朱参世等;《微计算机信息》;20101130;全文 * |
基于蜜罐的入侵检测系统的设计与实现;汪洁等;《计算机应用研究》;20120229;全文 * |
Also Published As
Publication number | Publication date |
---|---|
CN103150512A (zh) | 2013-06-12 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN103428196B (zh) | 一种基于url白名单的web应用入侵检测方法 | |
CN102469146B (zh) | 一种云安全下载方法 | |
CN102664875B (zh) | 基于云模式的恶意代码类别检测方法 | |
CN102945349B (zh) | 未知文件处理方法与装置 | |
CN102945348B (zh) | 文件信息收集方法与装置 | |
CN103294950B (zh) | 一种基于反向追踪的高威窃密恶意代码检测方法及系统 | |
CN103839003A (zh) | 恶意文件检测方法及装置 | |
CN105208000A (zh) | 网络分析攻击回溯的方法及网络安全设备 | |
WO2017040957A1 (en) | Process launch, monitoring and execution control | |
CN103150511A (zh) | 一种安全防护系统 | |
CN110188538B (zh) | 采用沙箱集群检测数据的方法及装置 | |
CN109474586A (zh) | 一种基于用户行为分析的高级持续性威胁分析方法 | |
CN103473501A (zh) | 一种基于云安全的恶意软件追踪方法 | |
CN103793649A (zh) | 通过云安全扫描文件的方法和装置 | |
CN103618626A (zh) | 一种基于日志的安全分析报告生成的方法和系统 | |
CN114465741B (zh) | 一种异常检测方法、装置、计算机设备及存储介质 | |
CN112131571B (zh) | 威胁溯源方法及相关设备 | |
CN105791250B (zh) | 应用程序检测方法及装置 | |
CN106953874B (zh) | 网站防篡改方法及装置 | |
CN112565278A (zh) | 一种捕获攻击的方法及蜜罐系统 | |
Choi et al. | All‐in‐One Framework for Detection, Unpacking, and Verification for Malware Analysis | |
CN113569240B (zh) | 恶意软件的检测方法、装置及设备 | |
CN108040036A (zh) | 一种行业云Webshell安全防护方法 | |
CN113595981B (zh) | 上传文件威胁检测方法及装置、计算机可读存储介质 | |
CN103150512B (zh) | 一种蜜罐系统和运用该系统检测木马的方法 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
C56 | Change in the name or address of the patentee | ||
CP01 | Change in the name or title of a patent holder |
Address after: Jingshan Hill Road, Lane 519015 Lianshan Jida Guangdong province Zhuhai City No. 8 Patentee after: ZHUHAI JUNTIAN ELECTRONIC TECHNOLOGY Co.,Ltd. Patentee after: BEIJING KINGSOFT INTERNET SECURITY SOFTWARE Co.,Ltd. Patentee after: Beijing Cheetah Mobile Technology Co.,Ltd. Patentee after: Beijing Cheetah Network Technology Co.,Ltd. Address before: Jingshan Hill Road, Lane 519015 Lianshan Jida Guangdong province Zhuhai City No. 8 Patentee before: Zhuhai Juntian Electronic Technology Co.,Ltd. Patentee before: BEIJING KINGSOFT INTERNET SECURITY SOFTWARE Co.,Ltd. Patentee before: SHELL INTERNET (BEIJING) SECURITY TECHNOLOGY Co.,Ltd. Patentee before: BEIJING KINGSOFT NETWORK TECHNOLOGY Co.,Ltd. |
|
TR01 | Transfer of patent right | ||
TR01 | Transfer of patent right |
Effective date of registration: 20191203 Address after: 519031 Room 105-53811, No. 6 Baohua Road, Hengqin New District, Zhuhai City, Guangdong Province Patentee after: Zhuhai Leopard Technology Co.,Ltd. Address before: Jingshan Hill Road, Lane 519015 Lianshan Jida Guangdong province Zhuhai City No. 8 Co-patentee before: BEIJING KINGSOFT INTERNET SECURITY SOFTWARE Co.,Ltd. Patentee before: Zhuhai Juntian Electronic Technology Co.,Ltd. Co-patentee before: Beijing Cheetah Mobile Technology Co.,Ltd. Co-patentee before: Beijing Cheetah Network Technology Co.,Ltd. |