CN102663296A - Intelligent detection method for Java script malicious code facing to the webpage - Google Patents
Intelligent detection method for Java script malicious code facing to the webpage Download PDFInfo
- Publication number
- CN102663296A CN102663296A CN2012100927070A CN201210092707A CN102663296A CN 102663296 A CN102663296 A CN 102663296A CN 2012100927070 A CN2012100927070 A CN 2012100927070A CN 201210092707 A CN201210092707 A CN 201210092707A CN 102663296 A CN102663296 A CN 102663296A
- Authority
- CN
- China
- Prior art keywords
- script
- javascript
- sample
- gram
- storehouse
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Images
Landscapes
- Debugging And Monitoring (AREA)
- Computer And Data Communications (AREA)
Abstract
Description
Claims (5)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201210092707.0A CN102663296B (en) | 2012-03-31 | 2012-03-31 | Intelligent detection method for Java script malicious code facing to the webpage |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201210092707.0A CN102663296B (en) | 2012-03-31 | 2012-03-31 | Intelligent detection method for Java script malicious code facing to the webpage |
Publications (2)
Publication Number | Publication Date |
---|---|
CN102663296A true CN102663296A (en) | 2012-09-12 |
CN102663296B CN102663296B (en) | 2015-01-07 |
Family
ID=46772783
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201210092707.0A Active CN102663296B (en) | 2012-03-31 | 2012-03-31 | Intelligent detection method for Java script malicious code facing to the webpage |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN102663296B (en) |
Cited By (22)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103116494A (en) * | 2013-01-25 | 2013-05-22 | 中兴通讯股份有限公司 | Automatic testing platform testing output information extraction method and device |
CN103221960A (en) * | 2012-12-10 | 2013-07-24 | 华为技术有限公司 | Detection method and apparatus of malicious code |
CN103559235A (en) * | 2013-10-24 | 2014-02-05 | 中国科学院信息工程研究所 | Online social network malicious webpage detection and identification method |
CN104134040A (en) * | 2014-07-25 | 2014-11-05 | 中国人民解放军信息工程大学 | Binary malicious code threatening evaluating method based on information fusion |
WO2014183545A1 (en) * | 2013-05-15 | 2014-11-20 | Tencent Technology (Shenzhen) Company Limited | Method,device and system for identifying script virus |
WO2015067114A1 (en) * | 2013-11-08 | 2015-05-14 | 腾讯科技(深圳)有限公司 | Method, apparatus, terminal and media for detecting document object model-based cross-site scripting attack vulnerability |
CN106022132A (en) * | 2016-05-30 | 2016-10-12 | 南京邮电大学 | Real-time webpage Trojan detection method based on dynamic content analysis |
CN106055980A (en) * | 2016-05-30 | 2016-10-26 | 南京邮电大学 | Rule-based JavaScript security testing method |
CN106485148A (en) * | 2015-10-29 | 2017-03-08 | 远江盛邦(北京)网络安全科技股份有限公司 | The implementation method of the malicious code behavior analysiss sandbox being combined based on JS BOM |
CN106529293A (en) * | 2016-11-09 | 2017-03-22 | 东巽科技(北京)有限公司 | Sample classification determination method for malware detection |
CN107659570A (en) * | 2017-09-29 | 2018-02-02 | 杭州安恒信息技术有限公司 | Webshell detection methods and system based on machine learning and static and dynamic analysis |
CN107688744A (en) * | 2017-08-31 | 2018-02-13 | 杭州安恒信息技术有限公司 | Malicious file sorting technique and device based on Image Feature Matching |
CN108920956A (en) * | 2018-07-03 | 2018-11-30 | 亚信科技(成都)有限公司 | Machine learning method and system based on context aware |
CN109190372A (en) * | 2018-07-09 | 2019-01-11 | 四川大学 | A kind of JavaScript Malicious Code Detection model based on bytecode |
CN109254827A (en) * | 2018-08-27 | 2019-01-22 | 电子科技大学成都学院 | A kind of secure virtual machine means of defence and system based on big data and machine learning |
CN110427755A (en) * | 2018-10-16 | 2019-11-08 | 新华三信息安全技术有限公司 | A kind of method and device identifying script file |
CN111723371A (en) * | 2020-06-22 | 2020-09-29 | 上海斗象信息科技有限公司 | Method for constructing detection model of malicious file and method for detecting malicious file |
CN112052451A (en) * | 2020-08-17 | 2020-12-08 | 北京兰云科技有限公司 | Webshell detection method and device |
CN112232076A (en) * | 2019-06-26 | 2021-01-15 | 腾讯科技(深圳)有限公司 | Script processing method and device and electronic equipment |
CN112685314A (en) * | 2021-01-05 | 2021-04-20 | 广州知图科技有限公司 | JavaScript engine security test method and test system |
CN113703780A (en) * | 2020-05-22 | 2021-11-26 | 广州虎牙科技有限公司 | Decompilation detection method, device, equipment and medium, and webpage resource data sending method, device, equipment and medium |
CN114595454A (en) * | 2022-03-11 | 2022-06-07 | 西安电子科技大学 | Malicious JS script detection method based on mixed analysis and feature fusion |
Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102034042A (en) * | 2010-12-13 | 2011-04-27 | 四川大学 | Novel unwanted code detecting method based on characteristics of function call relationship graph |
CN102346829A (en) * | 2011-09-22 | 2012-02-08 | 重庆大学 | Virus detection method based on ensemble classification |
-
2012
- 2012-03-31 CN CN201210092707.0A patent/CN102663296B/en active Active
Patent Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102034042A (en) * | 2010-12-13 | 2011-04-27 | 四川大学 | Novel unwanted code detecting method based on characteristics of function call relationship graph |
CN102346829A (en) * | 2011-09-22 | 2012-02-08 | 重庆大学 | Virus detection method based on ensemble classification |
Non-Patent Citations (5)
Title |
---|
D.KRISHNA SANDEEP REDDY等: "《2nd International Conference on Information Systems Security》", 22 December 2006 * |
JEREMY Z. KOLTER等: "《Tenth ACM SIGKDD International Conference on Knowledge Discovery and Data Mining》", 26 August 2004 * |
TONY ABOU-ASSALEH等: "《2nd Annual Conference on Privacy,Security and Trust》", 16 October 2004 * |
张勇等: "基于主动学习的计算机病毒检测方法研究", 《计算机与数字工程》 * |
张小康等: "基于加权信息增益的恶意代码检测方法", 《计算机工程》 * |
Cited By (35)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103221960A (en) * | 2012-12-10 | 2013-07-24 | 华为技术有限公司 | Detection method and apparatus of malicious code |
WO2014089744A1 (en) * | 2012-12-10 | 2014-06-19 | 华为技术有限公司 | Method and apparatus for detecting malicious code |
CN103116494A (en) * | 2013-01-25 | 2013-05-22 | 中兴通讯股份有限公司 | Automatic testing platform testing output information extraction method and device |
CN103116494B (en) * | 2013-01-25 | 2016-05-25 | 中兴通讯股份有限公司 | Automatic test platform test output information extracting method and device |
WO2014183545A1 (en) * | 2013-05-15 | 2014-11-20 | Tencent Technology (Shenzhen) Company Limited | Method,device and system for identifying script virus |
CN103559235A (en) * | 2013-10-24 | 2014-02-05 | 中国科学院信息工程研究所 | Online social network malicious webpage detection and identification method |
CN103559235B (en) * | 2013-10-24 | 2016-08-17 | 中国科学院信息工程研究所 | A kind of online social networks malicious web pages detection recognition methods |
US9754113B2 (en) | 2013-11-08 | 2017-09-05 | Tencent Technology (Shenzhen) Company Limited | Method, apparatus, terminal and media for detecting document object model-based cross-site scripting attack vulnerability |
WO2015067114A1 (en) * | 2013-11-08 | 2015-05-14 | 腾讯科技(深圳)有限公司 | Method, apparatus, terminal and media for detecting document object model-based cross-site scripting attack vulnerability |
CN104134040A (en) * | 2014-07-25 | 2014-11-05 | 中国人民解放军信息工程大学 | Binary malicious code threatening evaluating method based on information fusion |
CN104134040B (en) * | 2014-07-25 | 2017-03-29 | 中国人民解放军信息工程大学 | A kind of binary malicious codes menace appraisal procedure based on information fusion |
CN106485148A (en) * | 2015-10-29 | 2017-03-08 | 远江盛邦(北京)网络安全科技股份有限公司 | The implementation method of the malicious code behavior analysiss sandbox being combined based on JS BOM |
CN106055980A (en) * | 2016-05-30 | 2016-10-26 | 南京邮电大学 | Rule-based JavaScript security testing method |
CN106022132A (en) * | 2016-05-30 | 2016-10-12 | 南京邮电大学 | Real-time webpage Trojan detection method based on dynamic content analysis |
CN106055980B (en) * | 2016-05-30 | 2018-12-11 | 南京邮电大学 | A kind of rule-based JavaScript safety detecting method |
CN106529293A (en) * | 2016-11-09 | 2017-03-22 | 东巽科技(北京)有限公司 | Sample classification determination method for malware detection |
CN107688744A (en) * | 2017-08-31 | 2018-02-13 | 杭州安恒信息技术有限公司 | Malicious file sorting technique and device based on Image Feature Matching |
CN107688744B (en) * | 2017-08-31 | 2020-03-13 | 杭州安恒信息技术股份有限公司 | Malicious file classification method and device based on image feature matching |
CN107659570A (en) * | 2017-09-29 | 2018-02-02 | 杭州安恒信息技术有限公司 | Webshell detection methods and system based on machine learning and static and dynamic analysis |
CN108920956B (en) * | 2018-07-03 | 2021-05-14 | 亚信科技(成都)有限公司 | Machine learning method and system based on context awareness |
CN108920956A (en) * | 2018-07-03 | 2018-11-30 | 亚信科技(成都)有限公司 | Machine learning method and system based on context aware |
CN109190372A (en) * | 2018-07-09 | 2019-01-11 | 四川大学 | A kind of JavaScript Malicious Code Detection model based on bytecode |
CN109190372B (en) * | 2018-07-09 | 2021-11-12 | 四川大学 | JavaScript malicious code detection method based on bytecode |
CN109254827A (en) * | 2018-08-27 | 2019-01-22 | 电子科技大学成都学院 | A kind of secure virtual machine means of defence and system based on big data and machine learning |
CN109254827B (en) * | 2018-08-27 | 2022-04-22 | 电子科技大学成都学院 | Virtual machine safety protection method and system based on big data and machine learning |
CN110427755A (en) * | 2018-10-16 | 2019-11-08 | 新华三信息安全技术有限公司 | A kind of method and device identifying script file |
CN112232076A (en) * | 2019-06-26 | 2021-01-15 | 腾讯科技(深圳)有限公司 | Script processing method and device and electronic equipment |
CN113703780A (en) * | 2020-05-22 | 2021-11-26 | 广州虎牙科技有限公司 | Decompilation detection method, device, equipment and medium, and webpage resource data sending method, device, equipment and medium |
CN113703780B (en) * | 2020-05-22 | 2024-04-19 | 广州虎牙科技有限公司 | Decompilation detection and webpage resource data sending method, device, equipment and medium |
CN111723371A (en) * | 2020-06-22 | 2020-09-29 | 上海斗象信息科技有限公司 | Method for constructing detection model of malicious file and method for detecting malicious file |
CN111723371B (en) * | 2020-06-22 | 2024-02-20 | 上海斗象信息科技有限公司 | Method for constructing malicious file detection model and detecting malicious file |
CN112052451A (en) * | 2020-08-17 | 2020-12-08 | 北京兰云科技有限公司 | Webshell detection method and device |
CN112685314A (en) * | 2021-01-05 | 2021-04-20 | 广州知图科技有限公司 | JavaScript engine security test method and test system |
CN114595454A (en) * | 2022-03-11 | 2022-06-07 | 西安电子科技大学 | Malicious JS script detection method based on mixed analysis and feature fusion |
CN114595454B (en) * | 2022-03-11 | 2024-04-02 | 西安电子科技大学 | Malicious JS script detection method based on mixed analysis and feature fusion |
Also Published As
Publication number | Publication date |
---|---|
CN102663296B (en) | 2015-01-07 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN102663296A (en) | Intelligent detection method for Java script malicious code facing to the webpage | |
Laskov et al. | Static detection of malicious JavaScript-bearing PDF documents | |
Wang et al. | Detection of malicious web pages based on hybrid analysis | |
CN101924761A (en) | Method for detecting malicious program according to white list | |
Liu et al. | A novel approach for detecting browser-based silent miner | |
CN101924762B (en) | Cloud security-based active defense method | |
Wang et al. | Jsdc: A hybrid approach for javascript malware detection and classification | |
US20140245438A1 (en) | Download resource providing method and device | |
CN102663319B (en) | Prompting method and device for download link security | |
CN103279710B (en) | Method and system for detecting malicious codes of Internet information system | |
Choi et al. | Automatic detection for javascript obfuscation attacks in web pages through string pattern analysis | |
CN101964026A (en) | Method and system for detecting web page horse hanging | |
CN104881608A (en) | XSS vulnerability detection method based on simulating browser behavior | |
CN101751530B (en) | Method for detecting loophole aggressive behavior and device | |
US11263062B2 (en) | API mashup exploration and recommendation | |
WO2013026320A1 (en) | Method and system for detecting webpage trojan embedded | |
JP6505533B2 (en) | Malicious code detection | |
CN104881607A (en) | XSS vulnerability detection method based on simulating browser behavior | |
CN102609649A (en) | Method and device for collecting malicious software automatically | |
CN110765459A (en) | Malicious script detection method and device and storage medium | |
Phung et al. | Detection of malicious javascript on an imbalanced dataset | |
CN103607381A (en) | White list generation method, malicious program detection method, client and server | |
KR102120200B1 (en) | Malware Crawling Method and System | |
CN102591965A (en) | Method and device for detecting black chain | |
CN103475671A (en) | Method for detecting rogue programs |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
C41 | Transfer of patent application or patent right or utility model | ||
TR01 | Transfer of patent right |
Effective date of registration: 20151027 Address after: Zhejiang Zhongcai Building No. 68 Binjiang District road Hangzhou City, Zhejiang Province, the 310051 and 15 layer Patentee after: Dbappsecurity Co.,ltd. Address before: Zhejiang Zhongcai Building No. 68 Binjiang District road Hangzhou City, Zhejiang Province, the 310051 and 15 layer Patentee before: Dbappsecurity Co.,ltd. Patentee before: Chen Tieming |
|
CP03 | Change of name, title or address | ||
CP03 | Change of name, title or address |
Address after: Zhejiang Zhongcai Building No. 68 Hangzhou 310051 Zhejiang province Binjiang District Tong Road 15 Patentee after: Hangzhou Annan information technology Limited by Share Ltd Address before: Zhejiang Zhongcai Building No. 68 Binjiang District road Hangzhou City, Zhejiang Province, the 310051 and 15 layer Patentee before: Dbappsecurity Co.,ltd. |
|
CP02 | Change in the address of a patent holder | ||
CP02 | Change in the address of a patent holder |
Address after: Zhejiang Zhongcai Building No. 68 Binjiang District road Hangzhou City, Zhejiang Province, the 310051 and 15 layer Patentee after: Hangzhou Annan information technology Limited by Share Ltd Address before: Zhejiang Zhongcai Building No. 68 Hangzhou 310051 Zhejiang province Binjiang District Tong Road 15 Patentee before: Hangzhou Annan information technology Limited by Share Ltd |