发明授权
US09386028B2 System and method for malware detection using multidimensional feature clustering 有权
使用多维特征聚类进行恶意软件检测的系统和方法

System and method for malware detection using multidimensional feature clustering
摘要:
Methods and systems for malware detection techniques, which detect malware by identifying the Command and Control (C&C) communication between the malware and the remote host, and distinguish between communication transactions that carry C&C communication and transactions of innocent traffic. The fine-granularity features are examined, which are present in the transactions and are indicative of whether the transactions are exchanged with malware. A feature comprises an aggregated statistical property of one or more features of the transactions, such as average, sum median or variance, or of any suitable function or transformation of the features.
信息查询
0/0