首页> 外国专利> Detection of Stealthy Malware Activities with Traffic Causality and Scalable Triggering Relation Discovery

Detection of Stealthy Malware Activities with Traffic Causality and Scalable Triggering Relation Discovery

机译:具有流量因果关系和可扩展触发关系发现的隐身恶意软件活动检测

摘要

A computer system for distinguishing user-initiated network traffic from malware-initiated network traffic comprising at least one central processing unit (CPU) and a memory communicatively coupled to the CPU. The memory includes a program code executable by the CPU to monitor individual network events to determine for an individual network event whether the event has a legitimate root-trigger. Malware-initiated traffic is identified as an individual network event that does not have a legitimate root-trigger.
机译:一种用于将用户启动的网络流量与恶意软件启动的网络流量区分开的计算机系统,包括至少一个中央处理单元(CPU)和通信耦合到该CPU的内存。该存储器包括可由CPU执行以监视单个网络事件以确定该单个网络事件是否具有合法的根触发的程序代码。恶意软件启动的流量被标识为没有合法根触发的单个网络事件。

著录项

  • 公开/公告号US2014310808A1

    专利类型

  • 公开/公告日2014-10-16

    原文格式PDF

  • 申请/专利权人 DANFENG YAO;HAO ZHANG;

    申请/专利号US201414267422

  • 发明设计人 DANFENG YAO;HAO ZHANG;

    申请日2014-05-01

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2022-08-21 16:09:39

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号