FIELD: computer engineering.
SUBSTANCE: method of detecting malicious files, where the plurality of variable and immutable signs files from the database files for training; plenty features at least one file; separated multiple selected attributes of file on at least two subsets, in one of which there is at least one variable feature, the other has at least one immutable attribute; obtaining convolution of each of the above subsets of file attributes; created convolution file as a combination of folds of each of the above subsets of file attributes; Comparing the convolution of at least one file with a set of previously created folds files; file is considered to be similar to files from multiple similar files, having the same convolution if during comparison convolution of the said file matches the convolution file from the specified multiple; considered file objects, if the file is similar to files from multiple similar files, wherein said plurality of similar files is multiple harmful files.
EFFECT: technical result consists in computer safety.
16 cl, 5 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF SIMILAR FILES DETERMINING | 2015 |
|
RU2614561C1 |
SYSTEM AND METHOD FOR EVALUATION OF RELIABILITY OF CATEGORISATION RULES | 2013 |
|
RU2587429C2 |
METHOD OF ASSOCIATING PREVIOUSLY UNKNOWN FILE WITH COLLECTION OF FILES DEPENDING ON DEGREE OF SIMILARITY | 2009 |
|
RU2420791C1 |
SYSTEM AND METHOD OF CLASSIFYING OBJECTS OF COMPUTER SYSTEM | 2018 |
|
RU2724710C1 |
METHOD AND SYSTEM FOR ANALYSING OPERATION OF SOFTWARE DETECTION RULES | 2013 |
|
RU2568285C2 |
SYSTEM AND METHOD OF CLASSIFICATION OF OBJECTS | 2017 |
|
RU2679785C1 |
SYSTEM AND METHOD OF DETECTION OF MALICIOUS FILES USING A TRAINED MALWARE DETECTION PATTERN | 2017 |
|
RU2654151C1 |
SYSTEM AND METHOD OF DETECTING A MALICIOUS FILE | 2018 |
|
RU2739865C2 |
SYSTEM AND METHOD OF MACHINE TRAINING MODEL OF DETECTING MALICIOUS FILES | 2017 |
|
RU2673708C1 |
SYSTEM AND METHOD OF MANAGING COMPUTING RESOURCES FOR DETECTING MALICIOUS FILES | 2017 |
|
RU2659737C1 |
Authors
Dates
2016-04-10—Published
2013-06-28—Filed