CN103902855A - 一种文件篡改检测及修复的方法和系统 - Google Patents
一种文件篡改检测及修复的方法和系统 Download PDFInfo
- Publication number
- CN103902855A CN103902855A CN201310689374.4A CN201310689374A CN103902855A CN 103902855 A CN103902855 A CN 103902855A CN 201310689374 A CN201310689374 A CN 201310689374A CN 103902855 A CN103902855 A CN 103902855A
- Authority
- CN
- China
- Prior art keywords
- file
- newly
- normality
- hash
- increased
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000000034 method Methods 0.000 title claims abstract description 65
- 230000002159 abnormal effect Effects 0.000 claims abstract description 48
- 238000012544 monitoring process Methods 0.000 claims abstract description 20
- 230000008569 process Effects 0.000 claims description 26
- 230000008439 repair process Effects 0.000 claims description 21
- 238000001514 detection method Methods 0.000 claims description 10
- 238000012098 association analyses Methods 0.000 claims description 9
- 230000008878 coupling Effects 0.000 claims description 8
- 238000010168 coupling process Methods 0.000 claims description 8
- 238000005859 coupling reaction Methods 0.000 claims description 8
- 238000000605 extraction Methods 0.000 claims description 8
- 230000003993 interaction Effects 0.000 claims description 6
- 238000012986 modification Methods 0.000 claims description 6
- 230000004048 modification Effects 0.000 claims description 6
- 241000700605 Viruses Species 0.000 description 4
- 230000008901 benefit Effects 0.000 description 3
- 208000015181 infectious disease Diseases 0.000 description 3
- 238000012360 testing method Methods 0.000 description 3
- 230000008859 change Effects 0.000 description 2
- 238000011161 development Methods 0.000 description 2
- 238000010586 diagram Methods 0.000 description 2
- 238000005516 engineering process Methods 0.000 description 2
- 239000000284 extract Substances 0.000 description 2
- 238000004364 calculation method Methods 0.000 description 1
- 230000000052 comparative effect Effects 0.000 description 1
- 235000014510 cooky Nutrition 0.000 description 1
- 239000003292 glue Substances 0.000 description 1
- 239000013589 supplement Substances 0.000 description 1
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/55—Detecting local intrusion or implementing counter-measures
- G06F21/56—Computer malware detection or handling, e.g. anti-virus arrangements
- G06F21/568—Computer malware detection or handling, e.g. anti-virus arrangements eliminating virus, restoring damaged files
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F11/00—Error detection; Error correction; Monitoring
- G06F11/07—Responding to the occurrence of a fault, e.g. fault tolerance
- G06F11/14—Error detection or correction of the data by redundancy in operation
- G06F11/1402—Saving, restoring, recovering or retrying
- G06F11/1415—Saving, restoring, recovering or retrying at system level
- G06F11/1435—Saving, restoring, recovering or retrying at system level using file system or storage system metadata
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- General Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Health & Medical Sciences (AREA)
- Virology (AREA)
- Computer Hardware Design (AREA)
- Software Systems (AREA)
- Quality & Reliability (AREA)
- Library & Information Science (AREA)
- General Health & Medical Sciences (AREA)
- Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
Abstract
Description
Claims (14)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201310689374.4A CN103902855B (zh) | 2013-12-17 | 2013-12-17 | 一种文件篡改检测及修复的方法和系统 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201310689374.4A CN103902855B (zh) | 2013-12-17 | 2013-12-17 | 一种文件篡改检测及修复的方法和系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN103902855A true CN103902855A (zh) | 2014-07-02 |
CN103902855B CN103902855B (zh) | 2017-03-08 |
Family
ID=50994172
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201310689374.4A Active CN103902855B (zh) | 2013-12-17 | 2013-12-17 | 一种文件篡改检测及修复的方法和系统 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN103902855B (zh) |
Cited By (13)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN105117650A (zh) * | 2015-09-08 | 2015-12-02 | 北京元心科技有限公司 | 一种移动终端系统安全的保护方法及装置 |
CN105488402A (zh) * | 2014-12-23 | 2016-04-13 | 哈尔滨安天科技股份有限公司 | 一种暗链的检测方法及系统 |
CN107122552A (zh) * | 2017-05-02 | 2017-09-01 | 上海华力微电子有限公司 | 一种自动审查设计规则检查结果的方法 |
CN107196929A (zh) * | 2017-05-11 | 2017-09-22 | 国网山东省电力公司信息通信公司 | 适用于高频次网络攻防环境下的智能防护方法及其系统 |
CN108182363A (zh) * | 2017-12-25 | 2018-06-19 | 哈尔滨安天科技股份有限公司 | 嵌入式office文档的检测方法、系统及存储介质 |
CN108459927A (zh) * | 2018-02-28 | 2018-08-28 | 北京奇艺世纪科技有限公司 | 一种数据备份方法、装置和服务器 |
CN109040080A (zh) * | 2018-08-10 | 2018-12-18 | 中央电视台 | 文件篡改处理方法、装置、云服务平台及存储介质 |
CN109284607A (zh) * | 2018-09-20 | 2019-01-29 | 沈文策 | 一种非法文件的检测方法、装置、设备及存储介质 |
CN112579330A (zh) * | 2019-09-30 | 2021-03-30 | 奇安信安全技术(珠海)有限公司 | 操作系统异常数据的处理方法、装置及设备 |
CN112612756A (zh) * | 2020-12-21 | 2021-04-06 | 北京鸿腾智能科技有限公司 | 异常文件的修复方法、装置、设备及存储介质 |
CN113158185A (zh) * | 2021-03-05 | 2021-07-23 | 杭州数梦工场科技有限公司 | 安全检测方法与装置 |
CN114201370A (zh) * | 2022-02-21 | 2022-03-18 | 山东捷瑞数字科技股份有限公司 | 一种网页文件监控方法及系统 |
CN117272392A (zh) * | 2023-11-21 | 2023-12-22 | 国网四川省电力公司信息通信公司 | 用于终端的数据安全保护与备份控制方法和系统 |
Family Cites Families (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101359353B (zh) * | 2008-09-05 | 2011-05-18 | 成都市华为赛门铁克科技有限公司 | 一种文件保护方法及装置 |
CN103368926A (zh) * | 2012-04-10 | 2013-10-23 | 北京四维图新科技股份有限公司 | 一种防止文件篡改的方法和防止文件篡改的装置 |
CN103150511B (zh) * | 2013-03-18 | 2016-12-28 | 珠海市君天电子科技有限公司 | 一种安全防护系统 |
-
2013
- 2013-12-17 CN CN201310689374.4A patent/CN103902855B/zh active Active
Cited By (18)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN105488402A (zh) * | 2014-12-23 | 2016-04-13 | 哈尔滨安天科技股份有限公司 | 一种暗链的检测方法及系统 |
CN105117650B (zh) * | 2015-09-08 | 2018-05-04 | 北京元心科技有限公司 | 一种移动终端系统安全的保护方法及装置 |
CN105117650A (zh) * | 2015-09-08 | 2015-12-02 | 北京元心科技有限公司 | 一种移动终端系统安全的保护方法及装置 |
CN107122552A (zh) * | 2017-05-02 | 2017-09-01 | 上海华力微电子有限公司 | 一种自动审查设计规则检查结果的方法 |
CN107196929A (zh) * | 2017-05-11 | 2017-09-22 | 国网山东省电力公司信息通信公司 | 适用于高频次网络攻防环境下的智能防护方法及其系统 |
CN108182363A (zh) * | 2017-12-25 | 2018-06-19 | 哈尔滨安天科技股份有限公司 | 嵌入式office文档的检测方法、系统及存储介质 |
CN108459927A (zh) * | 2018-02-28 | 2018-08-28 | 北京奇艺世纪科技有限公司 | 一种数据备份方法、装置和服务器 |
CN109040080B (zh) * | 2018-08-10 | 2020-12-15 | 中央电视台 | 文件篡改处理方法、装置、云服务平台及存储介质 |
CN109040080A (zh) * | 2018-08-10 | 2018-12-18 | 中央电视台 | 文件篡改处理方法、装置、云服务平台及存储介质 |
CN109284607A (zh) * | 2018-09-20 | 2019-01-29 | 沈文策 | 一种非法文件的检测方法、装置、设备及存储介质 |
CN112579330A (zh) * | 2019-09-30 | 2021-03-30 | 奇安信安全技术(珠海)有限公司 | 操作系统异常数据的处理方法、装置及设备 |
CN112579330B (zh) * | 2019-09-30 | 2024-02-06 | 奇安信安全技术(珠海)有限公司 | 操作系统异常数据的处理方法、装置及设备 |
CN112612756A (zh) * | 2020-12-21 | 2021-04-06 | 北京鸿腾智能科技有限公司 | 异常文件的修复方法、装置、设备及存储介质 |
CN113158185A (zh) * | 2021-03-05 | 2021-07-23 | 杭州数梦工场科技有限公司 | 安全检测方法与装置 |
CN114201370A (zh) * | 2022-02-21 | 2022-03-18 | 山东捷瑞数字科技股份有限公司 | 一种网页文件监控方法及系统 |
CN114201370B (zh) * | 2022-02-21 | 2022-06-03 | 山东捷瑞数字科技股份有限公司 | 一种网页文件监控方法及系统 |
CN117272392A (zh) * | 2023-11-21 | 2023-12-22 | 国网四川省电力公司信息通信公司 | 用于终端的数据安全保护与备份控制方法和系统 |
CN117272392B (zh) * | 2023-11-21 | 2024-03-15 | 国网四川省电力公司信息通信公司 | 用于终端的数据安全保护与备份控制方法和系统 |
Also Published As
Publication number | Publication date |
---|---|
CN103902855B (zh) | 2017-03-08 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN103902855A (zh) | 一种文件篡改检测及修复的方法和系统 | |
JP6919569B2 (ja) | ログ分析システム、方法、及び記録媒体 | |
US10230742B2 (en) | Space and time efficient threat detection | |
US8788583B2 (en) | Sharing form training result utilizing a social network | |
JP5572763B2 (ja) | ウェブサイトスキャン装置及びその方法 | |
US20150207811A1 (en) | Vulnerability vector information analysis | |
US20150172303A1 (en) | Malware Detection and Identification | |
US11418534B2 (en) | Threat analysis system and threat analysis method | |
US20150047034A1 (en) | Composite analysis of executable content across enterprise network | |
US11514188B1 (en) | System and method for serving subject access requests | |
CN107395650B (zh) | 基于沙箱检测文件识别木马回连方法及装置 | |
US9792436B1 (en) | Techniques for remediating an infected file | |
US11036479B2 (en) | Devices, systems, and methods of program identification, isolation, and profile attachment | |
US20170116189A1 (en) | Search method and apparatus and storage medium | |
WO2023064007A1 (en) | Augmented threat investigation | |
JPWO2019123757A1 (ja) | 分類装置、分類方法、および、分類プログラム | |
JP6579995B2 (ja) | 静観候補特定装置、静観候補特定方法及び静観候補特定プログラム | |
EP3361405B1 (en) | Enhancement of intrusion detection systems | |
CN109033831A (zh) | 一种病毒检测方法、装置、电子设备及存储介质 | |
JP2013235408A (ja) | ログ管理システム、ログ管理サーバ及びプログラム | |
CN115001724A (zh) | 网络威胁情报管理方法、装置、计算设备及计算机可读存储介质 | |
US10353902B2 (en) | Non-transitory computer-readable recording medium, retrieval support device, and retrieval support method | |
US11194841B2 (en) | Value classification by contextual classification of similar values in additional documents | |
US20230297703A1 (en) | System and method for detecting a harmful script based on a set of hash codes | |
Jain et al. | Automated methods for identity resolution across online social networks |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
PE01 | Entry into force of the registration of the contract for pledge of patent right |
Denomination of invention: File tamper detecting and repairing method and system Effective date of registration: 20170621 Granted publication date: 20170308 Pledgee: Bank of Longjiang, Limited by Share Ltd, Harbin Limin branch Pledgor: Harbin Antiy Technology Co., Ltd. Registration number: 2017110000004 |
|
PE01 | Entry into force of the registration of the contract for pledge of patent right | ||
PC01 | Cancellation of the registration of the contract for pledge of patent right | ||
PC01 | Cancellation of the registration of the contract for pledge of patent right |
Date of cancellation: 20190614 Granted publication date: 20170308 Pledgee: Bank of Longjiang, Limited by Share Ltd, Harbin Limin branch Pledgor: Harbin Antiy Technology Co., Ltd. Registration number: 2017110000004 |
|
CP03 | Change of name, title or address |
Address after: 150028 Building 7, Innovation Plaza, Science and Technology Innovation City, Harbin High-tech Industrial Development Zone, Heilongjiang Province (838 Shikun Road) Patentee after: Harbin antiy Technology Group Limited by Share Ltd Address before: 150090 room 506, Hongqi Street, Nangang District, Harbin Development Zone, Heilongjiang, China, 162 Patentee before: Harbin Antiy Technology Co., Ltd. |
|
CP03 | Change of name, title or address | ||
PE01 | Entry into force of the registration of the contract for pledge of patent right |
Denomination of invention: File tamper detecting and repairing method and system Effective date of registration: 20190828 Granted publication date: 20170308 Pledgee: Bank of Longjiang, Limited by Share Ltd, Harbin Limin branch Pledgor: Harbin antiy Technology Group Limited by Share Ltd Registration number: Y2019230000002 |
|
PE01 | Entry into force of the registration of the contract for pledge of patent right | ||
CP01 | Change in the name or title of a patent holder |
Address after: 150028 Building 7, Innovation Plaza, Science and Technology Innovation City, Harbin High-tech Industrial Development Zone, Heilongjiang Province (838 Shikun Road) Patentee after: Antan Technology Group Co.,Ltd. Address before: 150028 Building 7, Innovation Plaza, Science and Technology Innovation City, Harbin High-tech Industrial Development Zone, Heilongjiang Province (838 Shikun Road) Patentee before: Harbin Antian Science and Technology Group Co.,Ltd. |
|
CP01 | Change in the name or title of a patent holder | ||
PC01 | Cancellation of the registration of the contract for pledge of patent right |
Date of cancellation: 20211119 Granted publication date: 20170308 Pledgee: Bank of Longjiang Limited by Share Ltd. Harbin Limin branch Pledgor: Harbin Antian Science and Technology Group Co.,Ltd. Registration number: Y2019230000002 |
|
PC01 | Cancellation of the registration of the contract for pledge of patent right |