首页> 外国专利> Unsupervised detection of anomalous processes using hardware features

Unsupervised detection of anomalous processes using hardware features

机译:使用硬件功能对异常过程进行无监督检测

摘要

Disclosed are devices, systems, apparatus, methods, products, media and other implementations, including a method that includes obtaining current hardware performance data, including hardware performance counter data, for a hardware device executing a first process associated with pre-recorded hardware performance data representative of the first process' normal behavior, and determining whether a malicious process is affecting performance of the first process based on a determination of an extent of deviation of the obtained current hardware performance data corresponding to the first process from the pre-recorded hardware performance data representative of the normal behavior of the first process.
机译:公开了设备,系统,装置,方法,产品,媒体和其他实现,包括一种方法,该方法包括获取用于执行与预先记录的硬件性能数据相关联的第一过程的硬件设备的当前硬件性能数据,包括硬件性能计数器数据。代表第一进程的正常行为,并基于确定与第一进程相对应的获取的当前硬件性能数据与预先记录的硬件性能的偏离程度,确定恶意进程是否正在影响第一进程的性能代表第一步正常行为的数据。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号