FIELD: information technology.
SUBSTANCE: invention relates to means of detecting malicious activity on a computer system. Collecting information on objects of computer system (hereinafter objects). Links between objects are determined based on analysis of collected information, wherein each communication is associated with a degree of reliability of communication. At least two graphs are formed on the basis of certain links so that the graph diameter is less than the predetermined parameter, at that, graph vertices are objects while edges are defined at previous stage. Resulting graph is formed based on the formed graphs so that the resultant graph contains at least one vertex from the first and second graphs and one edge connecting said vertices. At least one graph is selected from the graph base, the degree of similarity of which with the formed result graph exceeds a predetermined level, wherein in graphs there stored are preformed graphs of computer system activity, to each of which a coefficient of malicious activity is assigned. Decision is made to detect malicious activity on a computer system based on results of analysis of the formed and selected graphs.
EFFECT: high probability of detecting malicious activity.
16 cl, 4 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF DETECTING SOURCE OF MALICIOUS ACTIVITY ON COMPUTER SYSTEM | 2018 |
|
RU2724800C1 |
SYSTEM AND METHOD OF CLASSIFYING OBJECTS OF COMPUTER SYSTEM | 2018 |
|
RU2724710C1 |
SYSTEM AND METHOD OF DETECTING A MALICIOUS FILE | 2018 |
|
RU2739865C2 |
SYSTEM AND METHOD OF DETECTION OF MALICIOUS FILES USING A TRAINED MALWARE DETECTION PATTERN | 2017 |
|
RU2654151C1 |
SYSTEM AND METHOD FOR TRAINING HARMFUL CONTAINER DETECTION MODEL | 2018 |
|
RU2697955C2 |
SYSTEM AND METHOD OF CLASSIFICATION OF OBJECTS | 2017 |
|
RU2679785C1 |
SYSTEM AND METHOD OF MANAGING COMPUTING RESOURCES FOR DETECTING MALICIOUS FILES | 2017 |
|
RU2659737C1 |
SYSTEM AND METHOD OF MACHINE TRAINING MODEL OF DETECTING MALICIOUS FILES | 2017 |
|
RU2673708C1 |
SYSTEM AND METHOD FOR FORMING A SYSTEM OF TRAP RESOURCES | 2021 |
|
RU2761542C1 |
SYSTEM AND METHOD OF SELECTING MEANS OF DETECTING MALICIOUS FILES | 2019 |
|
RU2739830C1 |
Authors
Dates
2019-08-21—Published
2018-06-29—Filed