CN108171058A - Multi engine virus scan system and multi engine virus scan method based on Serverless frames - Google Patents
Multi engine virus scan system and multi engine virus scan method based on Serverless frames Download PDFInfo
- Publication number
- CN108171058A CN108171058A CN201711430132.8A CN201711430132A CN108171058A CN 108171058 A CN108171058 A CN 108171058A CN 201711430132 A CN201711430132 A CN 201711430132A CN 108171058 A CN108171058 A CN 108171058A
- Authority
- CN
- China
- Prior art keywords
- file
- detected
- serverless
- engine
- scanning
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/55—Detecting local intrusion or implementing counter-measures
- G06F21/56—Computer malware detection or handling, e.g. anti-virus arrangements
- G06F21/562—Static detection
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/06—Protocols specially adapted for file transfer, e.g. file transfer protocol [FTP]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
- H04L67/1097—Protocols in which an application is distributed across nodes in the network for distributed storage of data in networks, e.g. transport arrangements for network file system [NFS], storage area networks [SAN] or network attached storage [NAS]
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Software Systems (AREA)
- Computer Hardware Design (AREA)
- Signal Processing (AREA)
- General Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Theoretical Computer Science (AREA)
- Health & Medical Sciences (AREA)
- General Health & Medical Sciences (AREA)
- Virology (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
The invention discloses a kind of multi engine virus scan system based on Serverless frames and multi engine virus scan method, the wherein multi engine virus scan system includes:Mobile terminal and Serverless cloud networks, mobile terminal include:Client, Serverless cloud networks include:Antivirus engine router and Serverless scanning clusters;Client is used to upload file to be detected;Antivirus engine router distributes algorithm according to preset task and distributes file to be detected to each container in Serverless scanning clusters successively for receiving file to be detected;Container is used to carry out virus scan to the file to be detected received, and scanning result is sent to antivirus engine router using corresponding virus scanning engine;Antivirus engine router is additionally operable to summarize each scanning result and the corresponding final scanning results information of generation.Technical scheme of the present invention can substantially reduce the consumption of mobile terminal computing resource in itself and electric power resource, improve the range of checking and killing virus, accuracy and to new virus response speed.
Description
Technical field
The present invention relates to field of communication technology, more particularly to a kind of multi engine virus scan based on Serverless frames
System and multi engine virus scan method.
Background technology
With the development of mobile Internet, the network security that network security particularly moves equipment has received widely
Pay attention to.
Traditional checking and killing virus technology is mainly based upon the string matching algorithm to virus signature, and this technology needs
Feature database is all read in into memory, and the character string in file is matched using the algorithm of large amount of complex in sweep phase.
This method can largely expend CPU and memory source, and common desktop computer can also be dealt with, but for mobile terminal device
For, since its resource and electricity are all very limited, no small pressure can undoubtedly be caused using this technology.It is moreover, existing
Checking and killing virus software is all using single virus scanning engine, and killing effect is relied on single factory to antivirus engine feature by force
The newer speed in library and accuracy.
Therefore, there is an urgent need for a kind of novel checking and killing virus technologies smaller to own resource consuming, detectability is strong.Have simultaneously
It is standby stablize with can Quick Extended characteristic.
Invention content
The present invention is directed at least solve one of technical problem in the prior art, it is proposed that one kind is based on
The multi engine virus scan system of Serverless frames and multi engine virus scan method.
To achieve the above object, the present invention provides a kind of multi engine virus scan systems based on Serverless frames
System, including:Mobile terminal and Serverless cloud networks, the mobile terminal include:Client, the Serverless clouds
End network includes:Antivirus engine router and Serverless scanning clusters, the Serverless scannings cluster include:It is several
A container is each previously provided with corresponding virus scanning engine in the container;
The client is used to upload file to be detected;
The antivirus engine router distributes algorithm by described in for receiving the file to be detected according to preset task
File to be detected distributes successively to the Serverless each container scanned in cluster;
The container is used to carry out virus to the file to be detected received using corresponding virus scanning engine
Scanning, and scanning result is sent to the antivirus engine router;
The antivirus engine router is additionally operable to summarize each scanning result and the corresponding final scanning results letter of generation
Breath, and the final scanning results information is fed back into the client.
Optionally, the mobile terminal further includes:
Locally stored database module, for the corresponding institute of each file to be detected for storing that the client receives
The historical data of final scanning results information is stated, and generates the first of the file to be detected and the final scanning results information
Mapping table.
Optionally, the mobile terminal further includes:
First enquiry module, for before the client uploads file to be detected, inquiry described first to correspond to
Whether the to be detected file is recorded in relation table;If query result is yes, it is corresponding to inquire the file to be detected
Final scanning results information, if query result is no, described in the client to Serverless cloud networks upload
Pass file to be detected.
Optionally, the Serverless cloud networks further include:
Storage database module is shared in high in the clouds, for store the antivirus engine router feed back it is each described to be detected
The historical data of the corresponding final scanning results information of file, and generate the file to be detected and tied with the final scanning
Second mapping table of fruit information.
Optionally, the Serverless cloud networks further include:
Second enquiry module is treated for distributing algorithm according to preset task in the antivirus engine router by described
Before detection file distributes successively to the Serverless each container scanned in cluster, second mapping table is inquired
In whether record the file to be detected;If query result is yes, inquire that the file to be detected is corresponding finally to be swept
Result information is retouched, and is fed back to the antivirus engine router;If query result is no, the antivirus engine router
Algorithm is distributed according to preset task to distribute the file to be detected to each appearance in Serverless scanning clusters successively
Device.
To achieve the above object, the present invention also provides a kind of multi engine virus scan sides based on Serverless frames
Method, the multi engine virus scan method are based on multi engine virus scan system, and the multi engine virus scan system includes:It moves
Dynamic terminal and Serverless cloud networks, the mobile terminal include:Client, the Serverless cloud networks packet
It includes:Antivirus engine router and Serverless scanning clusters, the Serverless scannings cluster include:Several containers,
Corresponding virus scanning engine is previously provided in each container;
The multi engine virus scan method includes:
The client uploads file to be detected;
The antivirus engine router receives the file to be detected, and distribute algorithm according to preset task will be described to be checked
It surveys file and distributes to the Serverless each container scanned in cluster successively;
The container carries out virus scan using corresponding virus scanning engine to the file to be detected received,
And scanning result is sent to the antivirus engine router;
The antivirus engine router summarizes each scanning result and the corresponding final scanning results information of generation, and will
The final scanning results information feeds back to the client.
Optionally, the mobile terminal further includes:Locally stored database module,
The multi engine virus scan method further includes:
The corresponding institute of each file to be detected that the locally stored database module stores that the client receives
The historical data of final scanning results information is stated, and generates the first of the file to be detected and the final scanning results information
Mapping table.
Optionally, the mobile terminal further includes:First enquiry module;
The client further includes before uploading the step of file to be detected:
First enquiry module inquires in first mapping table whether record the file to be detected;If it looks into
It is yes to ask result, then inquires the corresponding final scanning results information of the file to be detected, if query result is no, perform
The client uploads the step of file to be detected.
Optionally, the Serverless cloud networks further include:Share storage database module in high in the clouds;
The multi engine virus scan method further includes:
It shares the storage database module storage antivirus engine router and feeds back each file to be detected in high in the clouds
The historical data of the corresponding final scanning results information, and generate the file to be detected and believe with the final scanning results
Second mapping table of breath.
Optionally, the Serverless cloud networks further include:Second enquiry module;
The antivirus engine router distributes algorithm according to preset task and distributes the file to be detected to described successively
Serverless is further included before scanning the step of each container in cluster:
Second enquiry module inquires in second mapping table whether record the file to be detected;If it looks into
It is yes to ask result, then inquires the corresponding final scanning results information of the file to be detected, and fed back to the virus
Engine router;If query result is no, performs the antivirus engine router and distribute algorithm by described according to preset task
File to be detected distribute successively to the Serverless scan cluster in each container the step of.
The invention has the advantages that:
The present invention provides a kind of multi engine virus scan systems based on Serverless frames and multi engine virus to sweep
Method is retouched, wherein the multi engine virus scan system includes:Mobile terminal and Serverless cloud networks, mobile terminal packet
It includes:Client, Serverless cloud networks include:Antivirus engine router and Serverless scanning clusters;Client is used
In upload file to be detected;Antivirus engine router will be treated for receiving file to be detected, and distributing algorithm according to preset task
Detection file distributes successively to Serverless each container scanned in cluster;Container is used to utilize corresponding virus scanning engine
To carry out virus scan to the file to be detected received, and scanning result is sent to antivirus engine router;Antivirus engine
Router is additionally operable to summarize each scanning result and the corresponding final scanning results information of generation.Technical scheme of the present invention can be significantly
The consumption of mobile terminal computing resource in itself and electric power resource is reduced, improves the range of checking and killing virus, accuracy and to new
Type virus response speed.
Description of the drawings
Fig. 1 is a kind of multi engine virus scan system based on Serverless frames that the embodiment of the present invention one provides
Structure diagram;
Fig. 2 is a kind of multi engine virus scan method based on Serverless frames provided by Embodiment 2 of the present invention
Flow chart;
Fig. 3 is a kind of multi engine virus scan method based on Serverless frames that the embodiment of the present invention three provides
Flow chart.
Specific embodiment
For those skilled in the art is made to more fully understand technical scheme of the present invention, the present invention is carried below in conjunction with the accompanying drawings
A kind of the multi engine virus scan system and multi engine virus scan method based on Serverless frames supplied is retouched in detail
It states.
Serverless frameworks are also known as serverless backup framework, are one of the architecture modes of newest rise, and practical significance is:
The ability of software deployment in the case where no any infrastructure is intervened.Serverless platforms have been automated in whole process
It establishes, deployment and on-demand startup service, user need to only register the demand of various required business functions and its resource.
It is with traditional framework difference, server side logic is run in stateless calculating container, it is triggered by event, complete
It is managed entirely by third party, the database and storage resource that the state of service layer is then used by developer record.
Serverless frameworks feature specific as follows:
1) it is quick to start:It needs to event request quick response, can complete to start in submicrosecond grade.
2) resilient expansion:Resource can be distributed in cluster automatically according to application demand, it is flexible on demand, without manually doing
In advance.
3) good isolation:It is not interfered with each other between different application.
4) robustness:After performing failure using logic, with fast dispatch and it can re-execute.
Based on the These characteristics of Serverless frameworks, the present invention provides it is a kind of mobile terminal resource is expended it is smaller,
The strong multi engine virus scan system of detectability and multi engine virus scan method.
Fig. 1 is a kind of multi engine virus scan system based on Serverless frames that the embodiment of the present invention one provides
Structure diagram, as shown in Figure 1, the multi engine virus scan system mainly includes two parts:Mobile terminal and Serverless
Cloud network.Wherein, mobile terminal includes:Client 1;Serverless cloud networks include:Antivirus engine router 2,
Serverless scans cluster 3, and Serverless scanning clusters 3 include:Several containers, are previously provided in each container pair
The virus scanning engine (being set in container in the form of program) answered, each container are considered as an independent virus and swept
Retouch instrument.
In the present invention, client 1 can be stored in as an application program in the operating system of mobile terminal, be used for
The local file for monitoring mobile terminal simultaneously communicates with Serverless cloud service networks, when finding apocrypha by it
Serverless cloud service networks are sent to as file to be detected to be scanned, and receive Serverless cloud services
The final scanning results information of network-feedback.
Antivirus engine router 2 is used to receive file to be detected, and distribute algorithm by file to be detected according to preset task
Each container scanned in cluster 3 is distributed to Serverless successively.Different manufacturers, difference can be disposed based on container technique beyond the clouds
The virus scanning engine of version, the virus scanning engine in each container are independent of one another.It should be noted that in practical applications may be used
The type of virus scanning engine, the quantity that set in cluster 3 are scanned to Serverless to be adjusted, have according to actual needs
Flexible controllability and autgmentability.
Preset task in the present invention distribute algorithm for ensure file to be detected can by each virus scanning engine into
Row scanning.Specifically, can be that file to be detected is sent in each container successively according to predetermined order;Can also be with each
The real-time status of container, file to be detected is first sent in the partial containers being in idle condition by selection to be handled, when surplus
When there are container by active state being idle state in remaining partial containers, then file to be detected is sent to the corresponding container
In, until file to be detected is scanned by each virus scanning engine.It is it should be noted that different in the present invention
Container can be carried out at the same time work.
Each container is used to carry out virus scan to the file to be detected received using corresponding virus scanning engine, and
Scanning result is sent to antivirus engine router 2.
Compared to the prior art, technical scheme of the present invention by deploying the diseases of different manufacturers, different editions beyond the clouds
Malicious scanning engine to set up an anti-virus network jointly, is greatly improved the range of checking and killing virus, accuracy and to novel
Viral response speed.Importantly, after using Serverless frameworks, stability and the scalability of system are obtained for greatly
Width improves.
Antivirus engine router 2 is additionally operable to summarize each scanning result and the corresponding final scanning results information of generation, and will
Final scanning results information feeds back to client 1.
Alternatively, the scanning result of each container output includes:Secure file, doubtful virus document or virus
File, antivirus engine router 2 summarize according to the scanning result that each container exports each container, and generate final scanning knot
Fruit information.
Further, as a kind of specific alternative, scanning result has been recorded in final scanning results information as safety
The virus scanning engine quantity of file, scanning result are the virus scanning engine quantity of doubtful virus document, scanning result is disease
The virus scanning engine quantity of malicious file, so that user subsequently determines that file to be detected is secure file or virus document.As
Another concrete scheme, antivirus engine router 2 according to scanning result is secure file, scanning result be doubtful virus document,
Scanning result be the virus scanning engine quantity of virus document use default decision algorithm (for example, in every case there are scanning result for
Virus document, it is determined that file to be detected is virus document) determine that file to be detected is secure file or virus document, and will
Definitive result is as final scanning results information.It should be noted that technical scheme of the present invention is to generating final scanning results
There is no limit final scanning results information is either the simple system of the scanning result to the output of each container for the specific algorithm of information
Meter or scanning result based on the output of each container and using it is default judge algorithm obtained from final definitive result,
It is within the scope of protection of the invention.
Technical scheme of the present invention by the Core Feature of checking and killing virus by being transferred to Serverless cloud service nets
Network can substantially reduce the consumption of mobile terminal computing resource in itself and electric power resource.In addition, in Serverless cloud services
In network, the virus scanning engine of different manufacturers, different editions can be disposed beyond the clouds based on container technique, to set up one jointly
Anti-virus network is greatly improved the range of checking and killing virus, accuracy and to new virus response speed.At the same time, it adopts
After Serverless frameworks, the stability and scalability of system can all be greatly improved.
In the present invention, it is preferable that the mobile terminal further includes:4 and first enquiry module 5 of locally stored database module.
Wherein, locally stored database module 4 is corresponding final for storing each file to be detected that client 1 receives
The historical data of scanning result information, and generate the first mapping table of file to be detected and final scanning results information.Tool
Body, in the first mapping table, the cryptographic Hash of each file to be detected as database key, treat by storage using in historical data
Detect the cryptographic Hash of file and the correspondence of final scanning results information.Certainly, can table be come with other information in the present invention
File to be detected, such as the filename of file to be detected are levied, is within the scope of protection of the invention, no longer one at one stroke herein
Example.
First enquiry module 5 be used for before client 1 uploads file to be detected, inquire the first mapping table in whether
Record file to be detected.Specifically, the first enquiry module 5 calculates the cryptographic Hash of the file to be detected, and pass corresponding with first
It is that cryptographic Hash described in table is compared, if existing in the first mapping table identical with the cryptographic Hash of the file to be detected
Cryptographic Hash then shows to have recorded file to be detected in the first mapping table, and the first enquiry module 5 inquires text to be detected at this time
The corresponding final scanning results information of part, and feed back to client 1;Conversely, then show not record in the first mapping table
There is text to be detected, client 1 uploads file to be detected to Serverless cloud networks at this time.
Technical scheme of the present invention by disposing locally stored database module 4 in mobile terminal, with to client 1 from
The historical data of the corresponding final scanning results information of each file to be detected received at Serverless cloud service networks
It is stored, and establishes the first mapping table, in order to the subsequent inquiry of user and browsing.At the same time, pass through setting the
One enquiry module 5, can be in the identical file to be detected of acquisition for mobile terminal, can be directly from locally stored database module 4
Final scanning results information is got, avoids multiple scanning work.
In the present invention, it is preferable that Serverless cloud networks further include:Share storage database module 6 and the in high in the clouds
Two enquiry modules 7.
Wherein, high in the clouds share storage database module 6 for store antivirus engine router 2 feed back it is each to be detected
The historical data of the corresponding final scanning results information of file, and generate the second of file to be detected and final scanning results information
Mapping table.In the second mapping table, using in historical data the cryptographic Hash of each file to be detected as database key,
Store the cryptographic Hash of file to be detected and the correspondence of final scanning results information.It should be noted that due to
Serverless cloud networks are to be intended for entire user group, therefore the data stored in the second mapping table are much larger than one
Data in a first mapping table.
Second enquiry module 7 be used for antivirus engine router 2 according to preset task distribute algorithm by file to be detected according to
It is secondary to distribute to before each container in Serverless scanning clusters 3, whether recorded in the second mapping table of inquiry to be checked
Survey file;If query result is yes, the corresponding final scanning results information of file to be detected is inquired, and fed back to disease
Malicious engine router 2;If query result is no, antivirus engine router 2 distributes algorithm by text to be detected according to preset task
Part distributes successively to Serverless each container scanned in cluster 3.Specifically, the second enquiry module 7 calculates the text to be detected
The cryptographic Hash of part, and being compared with the cryptographic Hash described in the second mapping table, if exist in the second mapping table with
The identical cryptographic Hash of the cryptographic Hash of the file to be detected, then show to have recorded file to be detected in the second mapping table, at this time
Second enquiry module 7 inquires the corresponding final scanning results information of file to be detected, and is fed back to antivirus engine routing
Device 2;Conversely, then showing not recording text to be detected in the second mapping table, antivirus engine router 2 is according to default at this time
Task distributes algorithm and file to be detected is distributed successively to Serverless to each container scanned in cluster 3, to be scanned.
Technical scheme of the present invention shares storage database module 6 by disposing high in the clouds in Serverless cloud networks,
To feed back to the history of the corresponding final scanning results information of each file to be detected of each client 1 to antivirus engine router 2
Data are stored, and establish the second mapping table, convenient for the subsequent inquiry of operator and browsing.At the same time, by setting
The second enquiry module 7 is put, can directly can be shared and deposit from high in the clouds when antivirus engine router 2 obtains identical file to be detected
Final scanning results information is got in storage database module 6, avoids multiple scanning work.
The embodiment of the present invention one provides a kind of multi engine virus scan system based on Serverless frames, will be viral
The Core Feature of killing is transferred to Serverless cloud service networks, can substantially reduce the computing resource of mobile terminal in itself and
The consumption of electric power resource;In addition, in Serverless cloud service networks, difference can be disposed based on container technique beyond the clouds
Producer, the virus scanning engine of different editions to set up an anti-virus network jointly, are greatly improved the wide of checking and killing virus
Degree, accuracy and to new virus response speed;At the same time, after using Serverless frameworks, the stability of system with
Scalability can all be greatly improved;The setting of storage database module is shared in locally stored database module and high in the clouds, can
Effectively multiple scanning is avoided to work, the processing speed of whole system can be promoted to a certain extent.
Fig. 2 is a kind of multi engine virus scan method based on Serverless frames provided by Embodiment 2 of the present invention
Flow chart, as shown in Fig. 2, the multi engine virus scan method is based on the multi engine virus scan system in above-described embodiment one,
The multi engine virus scan system includes:Mobile terminal and Serverless cloud networks, mobile terminal include:Client,
Serverless cloud networks include:Antivirus engine router, Serverless scanning clusters, Serverless scanning clusters
Including:Several containers are previously provided with corresponding virus scanning engine in each container.The multi engine virus scan method packet
It includes:
Step S101, client uploads file to be detected.
Step S102, antivirus engine router receives file to be detected, and distribute algorithm according to preset task will be to be detected
File distributes successively to Serverless each container scanned in cluster.
Step S103, container is swept using corresponding virus scanning engine to carry out virus to the file to be detected received
It retouches, and scanning result is sent to antivirus engine router.
Step S104, antivirus engine router summarizes each scanning result and the corresponding final scanning results information of generation, and
Final scanning results information is fed back into client.
For the specific descriptions of above-mentioned steps S1~step S104, reference can be made to corresponding contents in above-described embodiment one, herein
It repeats no more.
The Core Feature of checking and killing virus is transferred to Serverless cloud service networks by technical scheme of the present invention, can
Substantially reduce the consumption of mobile terminal computing resource in itself and electric power resource;In addition, in Serverless cloud service networks
In, the virus scanning engines of different manufacturers, different editions can be disposed beyond the clouds based on container technique, to set up a diseases prevention jointly
Malicious network is greatly improved the range of checking and killing virus, accuracy and to new virus response speed;At the same time, it uses
After Serverless frameworks, the stability and scalability of system can all be greatly improved;
Fig. 3 is a kind of multi engine virus scan method based on Serverless frames that the embodiment of the present invention three provides
Flow chart, as shown in figure 3, from above-described embodiment two unlike, mobile terminal further includes in the present embodiment:It is locally stored
Database module and the first enquiry module, Serverless cloud networks further include:Share storage database module and the in high in the clouds
Two enquiry modules, the multi engine virus scan method include:
Step S201, the first enquiry module inquires in the first mapping table whether record file to be detected.
If query result is yes, step S202 is performed;If query result is no, step S203 is performed.
Step S202, the first enquiry module inquires the corresponding final scanning of file to be detected from the first mapping table
Result information, and fed back to client.
Step S203, client uploads file to be detected.
Step S204, antivirus engine router receives file to be detected.
Step S205, the second enquiry module inquires in the second mapping table whether record file to be detected.
If query result is yes, step S206 is performed;If query result is no, step S207 is performed.
Step S206, the second enquiry module inquires the corresponding final scanning of file to be detected from the second mapping table
Result information, and fed back to antivirus engine router.
Step S206 performs step S211 after having performed.
Step S207, antivirus engine router according to preset task distribute algorithm by file to be detected distribute successively to
Each container in Serverless scanning clusters.
Step S208, container is swept using corresponding virus scanning engine to carry out virus to the file to be detected received
It retouches, and scanning result is sent to antivirus engine router.
Step S209, antivirus engine router summarizes each scanning result and the corresponding final scanning results information of generation.
Step S210, high in the clouds share storage database module stored in the second mapping table file to be detected with it is final
The correspondence of scanning result information.
Step S211, final scanning results information is fed back to client by antivirus engine router.
Step S212, client receives final scanning results information.
Step S213, locally stored database module stores file to be detected and final scanning in the first mapping table
The correspondence of result information.
For the specific descriptions of above-mentioned steps S210~step S211, reference can be made to corresponding contents in above-described embodiment one, this
Place repeats no more.
The embodiment of the present invention three provides a kind of multi engine virus scan method based on Serverless frames, will be viral
The Core Feature of killing is transferred to Serverless cloud service networks, can substantially reduce the computing resource of mobile terminal in itself and
The consumption of electric power resource;In addition, in Serverless cloud service networks, difference can be disposed based on container technique beyond the clouds
Producer, the virus scanning engine of different editions to set up an anti-virus network jointly, are greatly improved the wide of checking and killing virus
Degree, accuracy and to new virus response speed;At the same time, after using Serverless frameworks, the stability of system with
Scalability can all be greatly improved;The setting of storage database module is shared in locally stored database module and high in the clouds, can
Effectively multiple scanning is avoided to work, the processing speed of whole system can be promoted to a certain extent.
It is understood that the principle that embodiment of above is intended to be merely illustrative of the present and the exemplary implementation that uses
Mode, however the present invention is not limited thereto.For those skilled in the art, in the essence for not departing from the present invention
In the case of refreshing and essence, various changes and modifications can be made therein, these variations and modifications are also considered as protection scope of the present invention.
Claims (10)
1. a kind of multi engine virus scan system based on Serverless frames, which is characterized in that including:Mobile terminal and
Serverless cloud networks, the mobile terminal include:Client, the Serverless cloud networks include:Virus is drawn
Router and Serverless scanning clusters are held up, the Serverless scannings cluster includes:Several containers, each appearance
Corresponding virus scanning engine is previously provided in device;
The client is used to upload file to be detected;
The antivirus engine router for receiving the file to be detected, and distribute algorithm according to preset task will be described to be checked
It surveys file and distributes to the Serverless each container scanned in cluster successively;
The container is used to carry out virus scan to the file to be detected received using corresponding virus scanning engine,
And scanning result is sent to the antivirus engine router;
The antivirus engine router is additionally operable to summarize each scanning result and the corresponding final scanning results information of generation, and
The final scanning results information is fed back into the client.
2. multi engine virus scan system according to claim 1, which is characterized in that the mobile terminal further includes:
Locally stored database module, for store each file to be detected that the client receives it is corresponding it is described most
The historical data of whole scanning result information, and generate the first corresponding of the file to be detected and the final scanning results information
Relation table.
3. multi engine virus scan system according to claim 2, which is characterized in that the mobile terminal further includes:
First enquiry module, for before the client uploads file to be detected, inquiring first correspondence
Whether the to be detected file is recorded in table;If query result is yes, it is corresponding final to inquire the file to be detected
Scanning result information, if query result is no, the client uploads the biography to the Serverless cloud networks and treats
Detect file.
4. multi engine virus scan system according to claim 1, which is characterized in that the Serverless cloud networks
It further includes:
Storage database module is shared in high in the clouds, feeds back each file to be detected for storing the antivirus engine router
The historical data of the corresponding final scanning results information, and generate the file to be detected and believe with the final scanning results
Second mapping table of breath.
5. multi engine virus scan system according to claim 4, which is characterized in that the Serverless cloud networks
It further includes:
Second enquiry module, will be described to be detected for distributing algorithm according to preset task in the antivirus engine router
Before file distributes successively to the Serverless each container scanned in cluster, inquiring in second mapping table is
It is no to record the file to be detected;If query result is yes, the corresponding final scanning knot of the file to be detected is inquired
Fruit information, and fed back to the antivirus engine router;If query result is no, the antivirus engine router according to
Preset task distributes algorithm and the file to be detected is distributed successively to the Serverless to each container scanned in cluster.
A kind of 6. multi engine virus scan method based on Serverless frames, which is characterized in that the multi engine virus is swept
It retouches method and is based on multi engine virus scan system, the multi engine virus scan system includes:Mobile terminal and Serverless
Cloud network, the mobile terminal include:Client, the Serverless cloud networks include:Antivirus engine router and
Serverless scans cluster, and the Serverless scannings cluster includes:Several containers are each set in advance in the container
It is equipped with corresponding virus scanning engine;
The multi engine virus scan method includes:
The client uploads file to be detected;
The antivirus engine router receives the file to be detected, and distributes algorithm by the text to be detected according to preset task
Part distributes successively to the Serverless each container scanned in cluster;
The container carries out virus scan, and will using corresponding virus scanning engine to the file to be detected received
Scanning result is sent to the antivirus engine router;
The antivirus engine router summarizes each scanning result and the corresponding final scanning results information of generation, and by described in
Final scanning results information feeds back to the client.
7. multi engine virus scan method according to claim 6, which is characterized in that the mobile terminal further includes:This
Ground stores database module,
The multi engine virus scan method further includes:
The locally stored database module store each file to be detected that the client receives it is corresponding it is described most
The historical data of whole scanning result information, and generate the first corresponding of the file to be detected and the final scanning results information
Relation table.
8. multi engine virus scan method according to claim 7, which is characterized in that the mobile terminal further includes:The
One enquiry module;
The client further includes before uploading the step of file to be detected:
First enquiry module inquires in first mapping table whether record the file to be detected;If inquiry knot
Fruit is yes, then inquires the corresponding final scanning results information of the file to be detected, if query result is no, described in execution
Client uploads the step of file to be detected.
9. multi engine virus scan method according to claim 6, which is characterized in that the Serverless cloud networks
It further includes:Share storage database module in high in the clouds;
The multi engine virus scan method further includes:
It shares the storage database module storage antivirus engine router and feeds back each file correspondence to be detected in high in the clouds
The final scanning results information historical data, and generate the file to be detected and the final scanning results information
Second mapping table.
10. multi engine virus scan method according to claim 9, which is characterized in that Serverless high in the clouds net
Network further includes:Second enquiry module;
The antivirus engine router distributes algorithm according to preset task and distributes the file to be detected to described successively
Serverless is further included before scanning the step of each container in cluster:
Second enquiry module inquires in second mapping table whether record the file to be detected;If inquiry knot
Fruit is yes, then inquires the corresponding final scanning results information of the file to be detected, and fed back to the antivirus engine
Router;If query result is no, perform the antivirus engine router distribute algorithm according to preset task will be described to be checked
Survey file distribute successively to the Serverless scan cluster in each container the step of.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201711430132.8A CN108171058A (en) | 2017-12-26 | 2017-12-26 | Multi engine virus scan system and multi engine virus scan method based on Serverless frames |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201711430132.8A CN108171058A (en) | 2017-12-26 | 2017-12-26 | Multi engine virus scan system and multi engine virus scan method based on Serverless frames |
Publications (1)
Publication Number | Publication Date |
---|---|
CN108171058A true CN108171058A (en) | 2018-06-15 |
Family
ID=62520979
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201711430132.8A Pending CN108171058A (en) | 2017-12-26 | 2017-12-26 | Multi engine virus scan system and multi engine virus scan method based on Serverless frames |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN108171058A (en) |
Cited By (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110188537A (en) * | 2019-04-26 | 2019-08-30 | 北京奇安信科技有限公司 | Separate-storage method and device, storage medium, the electronic device of data |
CN110502313A (en) * | 2019-08-21 | 2019-11-26 | 赛尔网络有限公司 | Construction method, device, equipment and the medium of foreign trade business system based on Serverless |
CN110837407A (en) * | 2018-08-15 | 2020-02-25 | 阿里巴巴集团控股有限公司 | Server-free cloud service system, resource management method thereof and electronic equipment |
CN111274297A (en) * | 2020-01-19 | 2020-06-12 | 政采云有限公司 | Method and system for sharing resources without service terminal based on storage library |
CN112887167A (en) * | 2021-01-20 | 2021-06-01 | 深圳弘毅智造科技有限公司 | Automatic cloud test system of mobile client |
CN113285955A (en) * | 2021-06-03 | 2021-08-20 | 上海迈外迪网络科技有限公司 | Server, and method and device for scanning intranet equipment of router |
Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102081714A (en) * | 2011-01-25 | 2011-06-01 | 潘燕辉 | Cloud antivirus method based on server feedback |
CN102663308A (en) * | 2012-05-10 | 2012-09-12 | 北京中科浩晖科技有限公司 | System for managing and controlling virus killing and filtration terminal |
CN102970272A (en) * | 2011-09-01 | 2013-03-13 | 腾讯科技(深圳)有限公司 | Method, device and cloud server for detesting viruses |
CN103581193A (en) * | 2013-11-08 | 2014-02-12 | 星云融创(北京)信息技术有限公司 | Website vulnerability scanning method, device and system |
CN103679026A (en) * | 2013-12-03 | 2014-03-26 | 西安电子科技大学 | Intelligent defense system and method against malicious programs in cloud computing environment |
CN106203102A (en) * | 2015-05-06 | 2016-12-07 | 北京金山安全管理系统技术有限公司 | A kind of checking and killing virus method and device of the whole network terminal |
-
2017
- 2017-12-26 CN CN201711430132.8A patent/CN108171058A/en active Pending
Patent Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102081714A (en) * | 2011-01-25 | 2011-06-01 | 潘燕辉 | Cloud antivirus method based on server feedback |
CN102970272A (en) * | 2011-09-01 | 2013-03-13 | 腾讯科技(深圳)有限公司 | Method, device and cloud server for detesting viruses |
CN102663308A (en) * | 2012-05-10 | 2012-09-12 | 北京中科浩晖科技有限公司 | System for managing and controlling virus killing and filtration terminal |
CN103581193A (en) * | 2013-11-08 | 2014-02-12 | 星云融创(北京)信息技术有限公司 | Website vulnerability scanning method, device and system |
CN103679026A (en) * | 2013-12-03 | 2014-03-26 | 西安电子科技大学 | Intelligent defense system and method against malicious programs in cloud computing environment |
CN106203102A (en) * | 2015-05-06 | 2016-12-07 | 北京金山安全管理系统技术有限公司 | A kind of checking and killing virus method and device of the whole network terminal |
Cited By (9)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110837407A (en) * | 2018-08-15 | 2020-02-25 | 阿里巴巴集团控股有限公司 | Server-free cloud service system, resource management method thereof and electronic equipment |
CN110837407B (en) * | 2018-08-15 | 2023-04-28 | 阿里巴巴集团控股有限公司 | Server-free cloud service system, resource management method thereof and electronic equipment |
CN110188537A (en) * | 2019-04-26 | 2019-08-30 | 北京奇安信科技有限公司 | Separate-storage method and device, storage medium, the electronic device of data |
CN110502313A (en) * | 2019-08-21 | 2019-11-26 | 赛尔网络有限公司 | Construction method, device, equipment and the medium of foreign trade business system based on Serverless |
CN111274297A (en) * | 2020-01-19 | 2020-06-12 | 政采云有限公司 | Method and system for sharing resources without service terminal based on storage library |
CN112887167A (en) * | 2021-01-20 | 2021-06-01 | 深圳弘毅智造科技有限公司 | Automatic cloud test system of mobile client |
CN112887167B (en) * | 2021-01-20 | 2022-07-08 | 深圳弘毅智造科技有限公司 | Automatic cloud test system of mobile client |
CN113285955A (en) * | 2021-06-03 | 2021-08-20 | 上海迈外迪网络科技有限公司 | Server, and method and device for scanning intranet equipment of router |
CN113285955B (en) * | 2021-06-03 | 2022-10-11 | 上海迈外迪网络科技有限公司 | Server, and method and device for scanning intranet equipment of router |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN108171058A (en) | Multi engine virus scan system and multi engine virus scan method based on Serverless frames | |
US11716435B2 (en) | System and method for selectively sending, delivery and receiving of faxes | |
US10341509B2 (en) | Client device state collection and network-based processing solution | |
CN107277038A (en) | Access control method, device and system | |
US20210226979A1 (en) | Vulnerability scanning method, server and system | |
CN110737658A (en) | Data fragment storage method, device, terminal and readable storage medium | |
CN109491758A (en) | Docker mirror image distribution method, system, data gateway and computer readable storage medium | |
CN103812882A (en) | Method and system for transferring files | |
KR20220006623A (en) | Blockchain consensus method, device and system | |
CN102810138A (en) | Method and system for restoring files of clients | |
CN105915612A (en) | Push message acquisition method, message push method and device | |
CN103366117B (en) | A kind of viral restorative procedure of infection type and system | |
CN112055078B (en) | Data transmission method, device, computer equipment and storage medium | |
US8843915B2 (en) | Signature-based update management | |
CN111414139A (en) | Online remote printing method and device, computer equipment and storage medium | |
CN102594809A (en) | Method and system for rapidly scanning files | |
CN109951482A (en) | User terminal and its block chain domain name analytic method | |
CN106603711A (en) | Communication method and system and message server | |
CN113900810A (en) | Distributed graph processing method, system and storage medium | |
CN113285926A (en) | Honey pot trapping method and device for power monitoring system and computer equipment | |
WO2022247316A1 (en) | Storage object processing system, request processing method, gateway, and storage medium | |
CN108052826B (en) | Distributed sensitive data scan method and system based on anti-data-leakage terminal | |
US8560732B2 (en) | Peer-to-peer object distribution | |
CN109495602B (en) | Method and device for processing network access abnormity | |
US9609085B2 (en) | Broadcast-based update management |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
RJ01 | Rejection of invention patent application after publication |
Application publication date: 20180615 |
|
RJ01 | Rejection of invention patent application after publication |