FIELD: physics, computer engineering.
SUBSTANCE: invention relates to malware detection systems. The method of creating behaviour model scripts based on security rating rules consists of steps of: determining problematic rules which are simultaneously activated on both malicious and safe applications; for a problematic rule, selecting a group of applications for which said rule is activated; and finding at least one difference from the problematic rule, the activation of which together with the activation of the problematic rule enables to select from the selected group of applications only malicious or only safe applications; creating a behaviour model script based on the problematic rule and at least one of the found rules, different from the problematic rule, the activation of which together with the activation of the problematic rule enables to select from the selected group of applications only malicious or only safe applications, wherein the behaviour model script is used to adjust the security rating of the selected group of applications.
EFFECT: creating behaviour model scripts based on security rating rules.
11 cl, 3 dwg, 4 tbl
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD FOR IMPROVING QUALITY OF DETECTING MALICIOUS OBJECTS USING RULES AND PRIORITIES | 2012 |
|
RU2514140C1 |
METHOD FOR AUTOMATIC GENERATION OF HEURISTIC ALGORITHMS FOR SEARCHING FOR MALICIOUS OBJECTS | 2012 |
|
RU2510530C1 |
SYSTEM AND METHOD OF INCREASING EFFICIENCY OF DETECTING UNKNOWN HARMFUL OBJECTS | 2010 |
|
RU2454714C1 |
METHOD FOR AUTOMATIC ADJUSTMENT OF SECURITY MEANS | 2012 |
|
RU2514137C1 |
SYSTEM AND METHOD FOR PREVENTION SAFETY INCIDENTS BASED ON USER DANGER RATING | 2011 |
|
RU2477929C2 |
METHOD FOR DELAYED ELIMINATION OF MALICIOUS CODE | 2014 |
|
RU2583711C2 |
SYSTEM AND METHOD OF CLASSIFICATION OF OBJECTS | 2017 |
|
RU2679785C1 |
SYSTEM AND METHOD OF MANAGING COMPUTING RESOURCES FOR DETECTING MALICIOUS FILES | 2017 |
|
RU2659737C1 |
SYSTEM AND METHOD OF CLASSIFYING OBJECTS OF COMPUTER SYSTEM | 2018 |
|
RU2724710C1 |
SYSTEM AND METHOD OF MACHINE TRAINING MODEL OF DETECTING MALICIOUS FILES | 2017 |
|
RU2673708C1 |
Authors
Dates
2014-12-10—Published
2012-12-25—Filed