Trojan horse searching and killing method and device, electronic equipment and computer readable storage medium
The invention provides a Trojan horse searching and killing method and device, electronic equipment and a computer readable storage medium, and the method comprises the steps of executing one or more Trojan horses processed in a specified mode in an antivirus environment; obtaining target Trojan hor...
Gespeichert in:
1. Verfasser: | |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention provides a Trojan horse searching and killing method and device, electronic equipment and a computer readable storage medium, and the method comprises the steps of executing one or more Trojan horses processed in a specified mode in an antivirus environment; obtaining target Trojan horses of target Trojan horses which are not searched and killed in the one or more Trojan horses; performing decompilation processing on the target Trojan to determine a function data address of the target Trojan; determining a decryption algorithm and a first key of the function data according to the function data address; decrypting the encrypted target Trojan according to the decryption algorithm and the first key; and searching and killing the decrypted target Trojan horse. The Trojan searching and killing capability can be improved.
本申请提供了一种木马查杀方法、装置、电子设备及计算机可读存储介质,其中,该方法包括:在杀毒环境中,执行经过指定方式处理的一项或多项木马;获取所述一项或多项木马中未被查杀的目标木马的目标木马;对所述目标木马进行反编译处理,以确定出所述目标木马的功能数据地址;根据所述功能数据地址,确定出所述功能数据的解密算法和第一密钥;根据所述解密算法和所述第一密钥,对加密后的目标 |
---|