发明授权
- 专利标题: System and method for detecting malicious script
- 专利标题(中): 检测恶意脚本的系统和方法
-
申请号: US12944100申请日: 2010-11-11
-
公开(公告)号: US09032516B2公开(公告)日: 2015-05-12
- 发明人: Tae Ghyoon Kim , Young Han Choi , Seok Jin Choi , Cheol Won Lee
- 申请人: Tae Ghyoon Kim , Young Han Choi , Seok Jin Choi , Cheol Won Lee
- 申请人地址: KR Daejeon
- 专利权人: Electronics and Telecommunications Research Institute
- 当前专利权人: Electronics and Telecommunications Research Institute
- 当前专利权人地址: KR Daejeon
- 代理机构: LRK Patent Law Firm
- 优先权: KR10-2010-0027703 20100329
- 主分类号: G06F11/00
- IPC分类号: G06F11/00 ; G06F21/56
摘要:
Provided are a system and method for detecting a malicious script. The system includes a script decomposition module for decomposing a web page into scripts, a static analysis module for statically analyzing the decomposed scripts in the form of a document file, a dynamic analysis module for dynamically executing and analyzing the decomposed scripts, and a comparison module for comparing an analysis result of the static analysis module and an analysis result of the dynamic analysis module to determine whether the decomposed scripts are malicious scripts. The system and method can recognize a hidden dangerous hypertext markup language (HTML) tag irrespective of an obfuscation technique for hiding a malicious script in a web page and thus can cope with an unknown obfuscation technique.
公开/授权文献
- US20110239294A1 SYSTEM AND METHOD FOR DETECTING MALICIOUS SCRIPT 公开/授权日:2011-09-29
信息查询