FIELD: information technology.
SUBSTANCE: degree of calculating the degree of similarity is obtained by converting files into a data array containing values of hash functions from text lines of the file without taking into account presence of exclusion lines, which enables to cut on the time for comparing lines which do not carry the functional load. The degree of similarity of lines from the obtained file with lines from the collection of files is calculated. Association of the file to any file from the collection is determined based on the level of similarity.
EFFECT: faster process of detecting antivirus software.
17 cl, 11 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF SIMILAR FILES DETERMINING | 2015 |
|
RU2614561C1 |
SYSTEM AND METHOD FOR DETECTING MALICIOUS EXECUTABLE FILES BASED ON SIMILARITY OF EXECUTABLE FILE RESOURCES | 2013 |
|
RU2541120C2 |
SYSTEM AND METHOD OF MAKING FLEXIBLE CONVOLUTION FOR MALWARE DETECTION | 2013 |
|
RU2580036C2 |
SYSTEM AND METHOD TO COMPARE FILES BASED ON FUNCTIONALITY TEMPLATES | 2009 |
|
RU2427890C2 |
SYSTEM AND METHOD OF DETECTING MALICIOUS FILES ACCOMPANIED WITH USING THE STATIC ANALYSIS ELEMENTS | 2017 |
|
RU2654146C1 |
SYSTEM AND METHOD FOR DETECTING MALICIOUS FILES ON MOBILE DEVICES | 2015 |
|
RU2614557C2 |
SYSTEM AND METHOD OF BLOCKING SCRIPT EXECUTION | 2015 |
|
RU2606564C1 |
SYSTEM AND METHOD OF SELECTING MEANS OF DETECTING MALICIOUS FILES | 2019 |
|
RU2739830C1 |
METHOD AND SYSTEM FOR ANALYSING OPERATION OF SOFTWARE DETECTION RULES | 2013 |
|
RU2568285C2 |
METHOD AND SYSTEM FOR DETECTING MALICIOUS FILES IN A NON-ISOLATED MEDIUM | 2020 |
|
RU2722692C1 |
Authors
Dates
2011-06-10—Published
2009-10-01—Filed