首页>
外国专利>
Method and system for network-based detecting of malware from behavioral clustering
Method and system for network-based detecting of malware from behavioral clustering
展开▼
机译:基于网络的行为聚类恶意软件检测方法和系统
展开▼
页面导航
摘要
著录项
相似文献
摘要
A computerized system and method for performing behavioral clustering of malware samples, comprising: executing malware samples in a controlled computer environment for a predetermined time to obtain Hypertext Transfer Protocol. HTTP traffic; clustering the malware samples into at least one cluster based on network behavioral information from the HTTP traffic; and extracting, using the at least one processor, network signatures from the HTTP traffic information for each cluster, the network signatures being indicative of malware infection.
展开▼