FIELD: information technology.
SUBSTANCE: method of similar files determining, in which the set of immutable and mutable files characteristics are defined; in this case the file characteristics is considered as a variable sign, if the characteristic takes different values for a plurality of similar files. File characteristics are considered as immutable, if a characteristic takes the same value for a plurality of similar files; a variety of charateristics is separated from at least one file; a plurality of separated file characteristics is divided into at least two subsets: the subset of variable characteristics and a subset of the immutable characteristics; the convolution of each of the abovementioned subsets of file characteristics is formed; the file convolution is formed as a convolution combination of each of the abovementioned subsets of file characteristics; the convolution of at least one file is compared with a set of pre-designed file convolutions; the file is recognized as similar to the files from the plurality of similar files having the same convolution, if by comparison the convolution of the noted file is the same as the file convolution from the noted plurality.
EFFECT: finding of similar files.
2 cl, 5 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF MAKING FLEXIBLE CONVOLUTION FOR MALWARE DETECTION | 2013 |
|
RU2580036C2 |
METHOD AND SYSTEM FOR ANALYSING OPERATION OF SOFTWARE DETECTION RULES | 2013 |
|
RU2568285C2 |
SYSTEM AND METHOD OF CLASSIFYING OBJECTS OF COMPUTER SYSTEM | 2018 |
|
RU2724710C1 |
SYSTEM AND METHOD FOR EVALUATION OF RELIABILITY OF CATEGORISATION RULES | 2013 |
|
RU2587429C2 |
METHOD OF ASSOCIATING PREVIOUSLY UNKNOWN FILE WITH COLLECTION OF FILES DEPENDING ON DEGREE OF SIMILARITY | 2009 |
|
RU2420791C1 |
SYSTEM AND METHOD OF CLASSIFICATION OF OBJECTS | 2017 |
|
RU2679785C1 |
SYSTEM AND METHOD OF DETECTING MALICIOUS FILES ACCOMPANIED WITH USING THE STATIC ANALYSIS ELEMENTS | 2017 |
|
RU2654146C1 |
SYSTEM AND METHOD OF MANAGING COMPUTING RESOURCES FOR DETECTING MALICIOUS FILES | 2017 |
|
RU2659737C1 |
SYSTEM AND METHOD OF FORMATION OF ANTI-VIRUS RECORDS USED TO DETECT MALICIOUS FILES ON USER'S COMPUTER | 2015 |
|
RU2617654C2 |
SYSTEM AND METHOD OF DETECTING A MALICIOUS FILE | 2018 |
|
RU2739865C2 |
Authors
Dates
2017-03-28—Published
2015-12-18—Filed