CN109583192A - A kind of fixed safety system of mobile terminal application and method based on emulation - Google Patents

A kind of fixed safety system of mobile terminal application and method based on emulation Download PDF

Info

Publication number
CN109583192A
CN109583192A CN201811499139.XA CN201811499139A CN109583192A CN 109583192 A CN109583192 A CN 109583192A CN 201811499139 A CN201811499139 A CN 201811499139A CN 109583192 A CN109583192 A CN 109583192A
Authority
CN
China
Prior art keywords
mobile terminal
terminal application
virtual
simulation environment
module
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201811499139.XA
Other languages
Chinese (zh)
Inventor
刘善军
吴松洋
杜琳
刘欣
谢莉莉
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Third Research Institute of the Ministry of Public Security
Original Assignee
Third Research Institute of the Ministry of Public Security
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Third Research Institute of the Ministry of Public Security filed Critical Third Research Institute of the Ministry of Public Security
Priority to CN201811499139.XA priority Critical patent/CN109583192A/en
Publication of CN109583192A publication Critical patent/CN109583192A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/52Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow
    • G06F21/53Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow by executing in a restricted environment, e.g. sandbox or secure virtual machine
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F11/00Error detection; Error correction; Monitoring
    • G06F11/30Monitoring
    • G06F11/3051Monitoring arrangements for monitoring the configuration of the computing system or of the computing system component, e.g. monitoring the presence of processing resources, peripherals, I/O links, software programs
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F11/00Error detection; Error correction; Monitoring
    • G06F11/30Monitoring
    • G06F11/34Recording or statistical evaluation of computer activity, e.g. of down time, of input/output operation ; Recording or statistical evaluation of user activity, e.g. usability assessment
    • G06F11/3457Performance evaluation by simulation

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Software Systems (AREA)
  • Computer Hardware Design (AREA)
  • Quality & Reliability (AREA)
  • Computing Systems (AREA)
  • Stored Programmes (AREA)

Abstract

Safety system and method, the virtual simulation environment that this programme passes through building mobile terminal application operation are fixed in the mobile terminal application based on emulation that the invention discloses a kind of;And it is downloaded in virtual simulation environment, and mobile terminal application is installed;Mobile terminal application is run in virtual simulation environment, it identifies and triggers each functional unit in mobile terminal application, and emulation interaction is carried out to realize the corresponding function of each functional unit with mobile terminal application, while applying the interaction operational process in virtual simulation environment to be fixed mobile terminal and saving from damage.Scheme provided by the invention compared with the existing technology, by constructing virtual simulation environment, automatically to the interaction of mobile terminal application progress, and synchronizes collect evidence and save from damage.

Description

A kind of fixed safety system of mobile terminal application and method based on emulation
Technical field
The present invention relates to the safe practices of mobile Internet, and in particular to the evidence fixation for mobile terminal application is saved from damage Technology.
Background technique
With the further development of mobile Internet, Android phone security situation continues sternness, and gradually shows new Challenge, be mainly manifested in payment the sustainable growth of class wooden horse quantity, reinforcement technique by Malware utilize, malicious attack behavior to System bottom permeates and worm-type virus continues to bring out etc..Such as the Android phone silver of a entitled " the brave gangster of bank " Row wooden horse imitates real Mobile banking's software, and cell-phone number, the identification card number, bank of user's input are obtained by fishing mode The information such as account, password, and these information are uploaded to hacker's given server.After stealing Bank Account Number password, it will use immediately Fund in the account of family transfers.
Existing frequently-used evidence obtaining software can not be supported to Android platform application software feature and behavioural analysis, together Shi Jiben does not support the automatic fixation of Malware to save from damage.These work mainly pass through evidence obtaining personnel by auxiliary tool manually into Row analysis, and the fixation for carrying out evidence is saved from damage.
It can be seen that the forensic technologies that Android platform is required to effectively hit Malware are supported, but due to disliking Software of anticipating has stronger hiding, and concealing technology is also more complicated, at present forensic technologies at this stage and forensic tools, example DC-4601s Mobile Phone Forensics such as the UFED Portable mobile phone judicial evidence collection system of Cellebrite company, U.S. Asia Cupressaceae are dedicated Machine controls data evidence-obtaining system, high Knight's forensic tools system etc. to the characteristic of malware and behavioural analysis of Android platform It supports weaker.
Save from damage as it can be seen that this field needs one kind that Android application can be fixed, the behavior of application is monitored And carry out the complete evidence obtaining scheme of analysis evidence obtaining.
Summary of the invention
For existing forensic technologies and the problems of forensic tools for mobile terminal application, need a kind of new The forensic technologies of Malware can effectively be hit.
For this purpose, the purpose of the present invention is to provide a kind of, safety system, and base are fixed in the mobile terminal application based on emulation In a kind of fixed security method of mobile terminal application of the system.Mobile terminal application, which can be fixed, in the program saves from damage.
In order to achieve the above object, the mobile terminal application fixed safety system provided by the invention based on emulation, including Processor, and it is stored with the computer-readable medium of computer program, when the computer program is executed by processor:
Construct the virtual simulation environment of mobile terminal application operation;
It is downloaded in virtual simulation environment, and mobile terminal application is installed;
Mobile terminal application is run in virtual simulation environment, identifies and triggers each function list in mobile terminal application Member, and emulation interaction is carried out to realize the corresponding function of each functional unit with mobile terminal application, while being answered mobile terminal Interaction operational process in virtual simulation environment, which is fixed, to be saved from damage.
Further, the fixed safety system includes:
Virtual simulation environment module, the virtual simulation environment module simulation building mobile terminal application can run virtual Simulated environment;
Using downloading and starting module, the application downloading and starting module download mobile terminal application, and are virtually imitating The virtual simulation environment of true environment module building starts operation;
Application program saves module from damage automatically, and the application program saves module from damage automatically and identifies and trigger in mobile terminal application Each functional unit, and carry out emulation interaction to realize the corresponding function of each functional unit, simultaneously with mobile terminal application It applies the interaction operational process in virtual simulation environment to be fixed mobile terminal to save from damage.
Further, the fixed safety system further includes monitoring analysis module, and the monitoring analysis module monitors are mobile The behavioural characteristic of terminal applies operation, and analyzed.
Further, the fixed safety system further includes that virtual environment desktop records module, the virtual environment desktop It records module to operate in the virtual simulation environment of virtual simulation environment module building, and enrolls virtual simulation environment interface.
Further, the virtual simulation environment module is by starting virtual machine, and corresponding version is installed in virtual machine Android x86 framework android system, and to android system carry out initial configuration.
Further, the application program saves module from damage for the application program of operation automatically, and interception layout is extracted related Button reuses the automatically clicking that adb realizes program, starts film recording and screenshot capture in this process, in virtual machine All interfaces of app carry out screenshot preservation, while carrying out video recording preservation to entire operation process;Exist automatically to application program simultaneously Whole service state in virtual emulation machine is saved.
In order to achieve the above object, the mobile terminal application fixed security method provided by the invention based on emulation, packet It includes:
Construct the virtual simulation environment of mobile terminal application operation;
It is downloaded in virtual simulation environment, and mobile terminal application is installed;
Mobile terminal application is run in virtual simulation environment, identifies and triggers each function list in mobile terminal application Member, and emulation interaction is carried out to realize the corresponding function of each functional unit with mobile terminal application, while being answered mobile terminal Interaction operational process in virtual simulation environment, which is fixed, to be saved from damage.
Further, the fixed security method further includes answering after mobile terminal application starting operation mobile terminal The step of behavioural characteristic is monitored and analyzes.
Further, the method starts virtual machine when constructing virtual simulation environment first, and installs in virtual machine The android system of the Android x86 framework of corresponding version, and initial configuration is carried out to android system.
Further, the step of generating report the method also includes automation.
Scheme provided by the invention compared with the existing technology, by constructing virtual simulation environment, automatically answers mobile terminal With the interaction carried out, and synchronizes and carry out evidence obtaining and save from damage.
Meanwhile scheme provided by the invention can also monitor the various actions of mobile terminal application, and analyze it, It such as analyzes its network sending and receiving data packet, flow status, network address URL information, log in log.
Meanwhile content of collecting evidence can also be analyzed result and automatically generate report by scheme provided by the invention, so as to later period mirror Surely it checks.
Detailed description of the invention
The present invention is further illustrated below in conjunction with the drawings and specific embodiments.
Fig. 1 is the system block diagram of the fixed safety system of mobile terminal application in present example based on emulation;
Fig. 2 is that mobile terminal is carried out in present example using the fixed flow chart saved from damage.
Specific embodiment
In order to be easy to understand the technical means, the creative features, the aims and the efficiencies achieved by the present invention, tie below Conjunction is specifically illustrating, and the present invention is further explained.
By taking Android application program as an example, this example for existing evidence obtaining software can not to Android application program dynamic monitoring with Fixed the problem of saving from damage, by the way of virtual emulation, apk (AndroidPackage) corresponding to Android application program automatically Downloading, and the simulation of mounted Android application program is started up, Android application program is interacted automatically, and same stepping Row evidence obtaining is saved from damage;The behavioural characteristic of Android application program is monitored simultaneously, such as network, file is read, the behaviors such as permission are supervised Control and record, and support the crawl and analysis of data packet, while supporting to save operating process progress real-time recording from damage to entire.
Referring to Fig. 1 which shows this example gives the fixed guarantor of the application of the mobile terminal based on emulation based on the above principles System-wide system forms exemplary diagram.
The fixed safety system of mobile terminal application based on emulation mainly includes the fixed preserving procedure of mobile terminal application, The fixed preserving procedure of mobile terminal application is stored in corresponding computer-readable medium, and may operate at corresponding computer In equipment, by computer equipment processor call execute, with realize to mobile terminal apply it is automatic fix save from damage and certainly Dynamic behavioural analysis.
As seen from the figure, which mainly includes virtual simulation environment module 11, using downloading and starting module 12, application Program saves module 13, monitoring analysis module 14, virtual environment desktop from damage automatically and records module 15, report automatically-generating module 16.
Wherein, virtual simulation environment module 11 is used to simulate the virtual simulation environment that building mobile terminal application can be run.
The module starts virtual machine, and the Android system for corresponding to the Android x86 framework of version is installed in virtual machine System, and initial configuration is carried out to android system as prototype, such as Configuration network setting, android system root power Limit, x86 configuration parameters configuration etc..So that the android system based on x86 framework compared to arm framework, can be obviously improved and be The speed of service of system on computers.
When it is implemented, system will be installed Android virtual machine when installation, it can be automatic after system starting operation Start module operation, which starts virtual machine, and the Android x86 framework for corresponding to version is installed in virtual machine Android system, and initial configuration is carried out to android system as prototype, such as Configuration network setting, Android system System root authority, x86 configuration parameters configuration etc..It is ready for follow-up work.
Using downloading and starting module 12, corresponding apk is downloaded for automatic identification address and automatically, and calculate md5 value, To ensure that saved data are not changed, guarantee data consistency;The void constructed simultaneously in virtual simulation environment module 11 Apk program is installed and activated automatically in quasi- simulated environment.
This application downloading and starting module 12 pass through the apk download address identified in two dimensional code, the given address url or direct The modes such as page download apk are opened in virtual emulation machine, obtain apk program and apk is fixed and save from damage, then pass through adb Order connects virtual emulation machine and apk program is installed and activated.The module, which is able to achieve, saves the fixation of apk from damage while to apk Installation realization Full-automatic monitoring process is imported from getting.
Specifically, this module is by identifying the apk download address in two dimensional code, giving the address url, directly in computer webpage Or the webpage of virtual emulation machine the modes such as directly downloads and obtains apk program, calculates MD5 value, and apk is fixed and saves from damage.Pass through Android system in the connecting virtual machine of the port adb, after connecting upper analogue system, by adb order by specified apk program Application program after importing analogue system and being installed successfully by order starting apk program.
Application program saves module 13 from damage automatically, for the apk program of starting, identifies and triggers each in the apk program Functional unit, and emulation interaction is carried out to realize the corresponding function of each functional unit with mobile terminal application, while to movement Interaction operational process of the terminal applies in virtual simulation environment, which is fixed, to be saved from damage.
This module can intercept layout in application program operational process, extract associated button, reuse adb and realize journey The automatically clicking of sequence is achieved in automation and clicks to be introduced into fix and save from damage, greatly solves and click manually in evidence obtaining Software ground troublesome operation.
In specific implementation, this module in application program operational process, extract associated button, reuse by interception layout Adb realizes the automatically clicking of program, starts film recording and screenshot capture in this process, to institute's bounded of app in virtual machine Face carries out screenshot preservation, while carrying out video recording preservation to entire operation process, in addition to this, also automatically to entire virtual emulation ring Border generates snapshot, i.e. the whole service state to application program in virtual emulation machine saves, facilitate it is subsequent, can be extensive at any time Multiple some state run in virtual emulation machine to application program.
Monitoring analysis module 14, for carrying out behavioural characteristic monitoring to the apk program in virtual simulation environment simulation starting, And carry out the crawl and analysis of data packet.As an example, the behavior monitoring of progress includes network, file reading, the behaviors such as permission Monitoring.
This module is by obtaining all communication datas to progress Data Packet Seize under virtual environment, by system correlation The monitoring of interface realizes that file reads the behavior monitoring with permission.Comprehensive operation information of APK operation is obtained, it can be found that The abnormal behaviour of APK.
This monitoring analysis module is pre-loaded into virtual system, when user starts APK, the row of monitoring analysis module analysis APK For, and record relevant monitoring information.Packet capturing is carried out to the network access of virtual system first, and records the net of all virtual machines Network signal intelligence;When application access file, the interface of file access is intercepted and captured, and the file information of record access;When It when the specific permission of application request, is buried a little by the monitoring set in advance, the authority information of interception request, returns to monitoring point Analyse module.
Virtual environment desktop records module 15, which operates in the virtual simulation environment of virtual simulation environment module building In, and enroll virtual simulation environment interface.
This module major function include virtual machine screenshot capture and video recording and operating system the interface of computer recorded Picture, virtual machine screenshotss and video recording are by calling Android virtual machine interface to realize, computer desktop screenshot is by calling windows interface It realizes.Module solution needs that operating process is recorded a video and takes pictures to each interface cumbersome with video camera during now surveying Process greatly improves the efficiency.
After starting virtual environment, system can start virtual environment desktop automatically and record module, and virtual machine is respectively started The film recording tool of class video recording and screenshot tool and entire computer desktop carries out screenshot preservation to the interface in virtual machine, Realize page fix save from damage, while in virtual machine operation and computer desktop record a video, guarantee to whole process carry out It saves.
It reports automatically-generating module 16, automatically generates behavior report for the analysis result according to monitoring analysis module 14.
System screenshot in the process of running, video recording, the behavior of user's remarks and app are all stored in data, and the module is logical Reading database is crossed, and is arranged, forms the report of specific format by preset template, export is supported in report, can be very It is intuitive check it is fixed save from damage arranged as a result, carrying out comprehensive duty to related data, forensics analysis efficiency can be improved well.
System automatically generates report after the complete app program of automatic running, by starting report automatically-generating module operation, mould Block forms report by database data with existing, and report is listed in lists, can click and check.
Thus the fixed safety system of mobile terminal application based on emulation constituted is in use, first by building Android The virtual simulation environment of application program operation;Then, it is downloaded automatically in virtual simulation environment, and Android application program is installed; Finally, run Android application program in virtual simulation environment, and automatic identification and trigger each function in Android application program Can unit, and carry out emulation interaction with Android application program to realize the corresponding function of each functional unit, while answering Android It is fixed and is saved from damage with interaction operational process of the program in virtual simulation environment.As an example, detailed description below is sharp once With this system is carried out to Android application program automatically fixed save from damage and the process of behavioural analysis.
It is installed in the installation windows operating system that this system only needs to network at one when application, then Starting operation.
Referring to fig. 2, whole process includes the following steps:
Step 1. opens computer desktop and records module, and starts Android virtual simulation environment module.
Step 2: starting Android virtual environment desktop records module, for recording virtual machine interface.
Step 3: starting the network linking of virtual environment;The network linking of the virtual machine, can by manual configuration virtual machine or It is automatically configured by software to realize.
Step 4: starting analysis monitoring module in Android virtual simulation environment, for completing network monitoring, file monitor, power Limit monitoring etc., and start monitoring and show interface.
Step 5: import corresponding apk link and two dimensional code, using downloading and starting module automatic identification address and it is automatic under Corresponding apk is carried, and calculates md5 value.
Step 6: application downloading and starting module install the apk program downloaded automatically, and start apk program
Step 7: starting application program saves module, each function button in automatic identification apk program from damage automatically, and clicks Start corresponding function, and with apk program carry out emulation interaction to realize the corresponding function of each function button: if page needs Account number cipher is inputted, then automatically enters account number cipher, two dimensional code payment then waits delivery operation to execute after the completion next if it exists Step.Automatically saving from damage can suspend and continue, and for each step automatic camera and store, and in the column of picture management module It is shown in table, supports addition remarks.
Specifically, application program saves module from damage automatically and intercepts layout automatically in application program operational process, extract related Button reuses the automatically clicking that adb realizes program, starts film recording and screenshot capture in this process, in virtual machine All interfaces of app carry out screenshot preservation, while carrying out video recording preservation to entire operation process, except this is unexpected automatically to entire void Quasi- simulated environment generates snapshot, i.e. the whole service state to application program in virtual emulation machine saves.Facilitate it is subsequent, It can be restored to some state that application program is run in virtual emulation machine at any time.The picture and video recording of preservation can store data It in library, and is shown on interface in a manner of list, remarks can be added on software, which can equally be saved to In database.It can suspend during automatically saving operation and saving, automatically clicking movement stops after pause, video recording and screenshot Function also stops, and continues if clicking, and above-mentioned movement can start at once.
Step 8. can show the clickstream data in interface to monitoring, and then can show the particular content of behavior.
Step 9. generates apk behavior report, is packaged and saves video file, screenshot file etc. and calculate md5 value, to ensure The data of preservation are not changed, guarantee data consistency.
This step is monitored and saves in the operational process of apk, to the concrete behavior of apk, is related to network address connection, connects The behaviors such as mouth calls, and file is read, while the information such as related file and the remarks of user are saved, generation behavior, which is reported, is These existing data are arranged, apk behavior report is eventually formed
By examples detailed above it is found that this programme helps to solve now based on the mobile terminal of emulation using fixed scheme of saving from damage The a series of problems and business demand faced during evidence obtaining, for public safety industry work provide more efficient product and Service, research achievement peomote the development of wooden horse prevention industry technology, can be well public security organ's strike prevention net Network crime provides technical support.
Finally it is noted that the method or particular system unit or its part unit of aforementioned present invention, are pure software Framework can be laid in tangible media through program code, such as hard disk, disc or any electronic device (such as intelligent hand Machine, computer-readable storage media), when machine loading procedure code and execute (such as smartphone load and execution), Machine becomes to carry out the device of the invention.The method and apparatus of aforementioned present invention can also be penetrated with form of program codes Media are transmitted, if cable, optical fiber or any transmission kenel are transmitted, when program code is by machine (such as smartphone) It receives, load and execution, machine become to carry out the device of the invention.
The basic principles, main features and advantages of the present invention have been shown and described above.The technology of the industry Personnel are it should be appreciated that the present invention is not limited to the above embodiments, and the above embodiments and description only describe this The principle of invention, without departing from the spirit and scope of the present invention, various changes and improvements may be made to the invention, these changes Change and improvement all fall within the protetion scope of the claimed invention.The claimed scope of the invention by appended claims and its Equivalent thereof.

Claims (10)

1. the fixed safety system of mobile terminal application based on emulation, including processor, and it is stored with the meter of computer program Calculation machine readable medium, which is characterized in that when the computer program is executed by processor:
Construct the virtual simulation environment of mobile terminal application operation;
It is downloaded in virtual simulation environment, and mobile terminal application is installed;
Mobile terminal application is run in virtual simulation environment, identifies and trigger each functional unit in mobile terminal application, And emulation interaction is carried out to realize the corresponding function of each functional unit with mobile terminal application, while applying to mobile terminal Interaction operational process in virtual simulation environment, which is fixed, to be saved from damage.
2. the fixed safety system of mobile terminal application according to claim 1, which is characterized in that the fixed safety system Include:
Virtual simulation environment module, the virtual emulation that the virtual simulation environment module simulation building mobile terminal application can be run Environment;
Using downloading and starting module, the application downloading and starting module download mobile terminal application, and in virtual emulation ring The virtual simulation environment of border module building starts operation;
Application program saves module from damage automatically, and the application program saves module from damage automatically and identifies and trigger every in mobile terminal application Functional unit, and with mobile terminal application emulation interaction is carried out to realize the corresponding function of each functional unit, while to shifting Dynamic interaction operational process of the terminal applies in virtual simulation environment, which is fixed, to be saved from damage.
3. the fixed safety system of mobile terminal application according to claim 2, which is characterized in that the fixed safety system It further include monitoring analysis module, the behavioural characteristic of the monitoring analysis module monitors mobile terminal application operation, and analyzed.
4. the fixed safety system of mobile terminal application according to claim 2, which is characterized in that the fixed safety system It further include that virtual environment desktop records module, the virtual environment desktop records module and operates in the building of virtual simulation environment module Virtual simulation environment in, and enroll virtual simulation environment interface.
5. the fixed safety system of mobile terminal application according to claim 2, which is characterized in that the virtual simulation environment Module starts virtual machine, and the android system for corresponding to the Android x86 framework of version is installed in virtual machine, and right Android system carries out initial configuration.
6. the fixed safety system of mobile terminal application according to claim 5, which is characterized in that the application program is automatic Save module from damage for the application program of operation, interception layout extracts associated button, the automatically clicking that adb realizes program is reused, Start film recording and screenshot capture in this process, screenshot preservation is carried out to all interfaces of app in virtual machine, while to whole A operating process carries out video recording preservation;The whole service state automatically to application program in virtual emulation machine is protected simultaneously It deposits.
7. the fixed security method of mobile terminal application based on emulation characterized by comprising
Construct the virtual simulation environment of mobile terminal application operation;
It is downloaded in virtual simulation environment, and mobile terminal application is installed;
Mobile terminal application is run in virtual simulation environment, identifies and trigger each functional unit in mobile terminal application, And emulation interaction is carried out to realize the corresponding function of each functional unit with mobile terminal application, while applying to mobile terminal Interaction operational process in virtual simulation environment, which is fixed, to be saved from damage.
8. the fixed security method of mobile terminal application according to claim 7, which is characterized in that the fixed security method It further include after mobile terminal application starting operation, the step of the behavioural characteristic of mobile terminal application is monitored and is analyzed.
9. the fixed security method of mobile terminal application according to claim 7, which is characterized in that the method is empty in building When quasi- simulated environment, starting virtual machine, and the Android x86 framework of the corresponding version of installation in virtual machine first Android system, and initial configuration is carried out to android system.
10. the fixed security method of mobile terminal application according to claim 7, which is characterized in that the method also includes Automation generates the step of report.
CN201811499139.XA 2018-12-08 2018-12-08 A kind of fixed safety system of mobile terminal application and method based on emulation Pending CN109583192A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201811499139.XA CN109583192A (en) 2018-12-08 2018-12-08 A kind of fixed safety system of mobile terminal application and method based on emulation

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201811499139.XA CN109583192A (en) 2018-12-08 2018-12-08 A kind of fixed safety system of mobile terminal application and method based on emulation

Publications (1)

Publication Number Publication Date
CN109583192A true CN109583192A (en) 2019-04-05

Family

ID=65929314

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201811499139.XA Pending CN109583192A (en) 2018-12-08 2018-12-08 A kind of fixed safety system of mobile terminal application and method based on emulation

Country Status (1)

Country Link
CN (1) CN109583192A (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110471855A (en) * 2019-08-21 2019-11-19 小胡杨信息技术(武汉)有限公司 A kind of computer application software test macro and method
CN113867630A (en) * 2021-09-10 2021-12-31 长沙市致存科技有限责任公司 Data batch writing method and device of memory, terminal equipment and storage medium
CN113867630B (en) * 2021-09-10 2024-07-09 长沙市致存科技有限责任公司 Method and device for batch writing of data of memory, terminal equipment and storage medium

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103685251A (en) * 2013-12-04 2014-03-26 电子科技大学 Android malicious software detecting platform oriented to mobile internet
CN104182688A (en) * 2014-08-26 2014-12-03 北京软安科技有限公司 Android malicious code detection device and method based on dynamic activation and behavior monitoring

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103685251A (en) * 2013-12-04 2014-03-26 电子科技大学 Android malicious software detecting platform oriented to mobile internet
CN104182688A (en) * 2014-08-26 2014-12-03 北京软安科技有限公司 Android malicious code detection device and method based on dynamic activation and behavior monitoring

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110471855A (en) * 2019-08-21 2019-11-19 小胡杨信息技术(武汉)有限公司 A kind of computer application software test macro and method
CN113867630A (en) * 2021-09-10 2021-12-31 长沙市致存科技有限责任公司 Data batch writing method and device of memory, terminal equipment and storage medium
CN113867630B (en) * 2021-09-10 2024-07-09 长沙市致存科技有限责任公司 Method and device for batch writing of data of memory, terminal equipment and storage medium

Similar Documents

Publication Publication Date Title
CN103186740B (en) A kind of automated detection method of Android malware
CN110855676B (en) Network attack processing method and device and storage medium
CN112685737A (en) APP detection method, device, equipment and storage medium
CN104766007A (en) Method for quickly recovering sandbox based on file system filter driver
CN103176899B (en) Mobile phone simulator and on host analogue mobile phone function method
CN107168844B (en) Performance monitoring method and device
CN113867913A (en) Business request processing method, device, equipment and storage medium for microservice
CN109614203B (en) Android application cloud data evidence obtaining and analyzing system and method based on application data simulation
CN109829300A (en) APP dynamic depth malicious act detection device, method and system
CN109783316B (en) Method and device for identifying tampering behavior of system security log, storage medium and computer equipment
CN113722164A (en) Method, system and storage medium for automatic testing of mobile terminal and remote real machine debugging
CN104809057A (en) Application test system, application test method and storage medium
CN111639000B (en) Method for quickly extracting backup data of android mobile terminal and automatic backup system
CN113467784A (en) Application program processing method and device and computer readable storage medium
CN114969760A (en) Vulnerability detection method and device, computer readable medium and electronic equipment
CN109583192A (en) A kind of fixed safety system of mobile terminal application and method based on emulation
CN111026945B (en) Multi-platform crawler scheduling method, device and storage medium
CN108595169B (en) Visual programming method, cloud server and storage medium
KR20140122414A (en) Management system and method for certifying process
KR102254693B1 (en) Cyber security training system having network writing function
CN111786991B (en) Block chain-based platform authentication login method and related device
CN110262856B (en) Application program data acquisition method, device, terminal and storage medium
CN113515750A (en) Attack detection method and device under high-speed flow
CN116212398B (en) Game management method, device, equipment and medium based on data center
CN113660238B (en) Man-machine identification method, device, system, equipment and readable storage medium

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20190405