首页> 外国专利> Computer Imposed Countermeasures Driven by Malware Lineage

Computer Imposed Countermeasures Driven by Malware Lineage

机译:恶意软件沿袭驱动的计算机实施的对策

摘要

A system to identify and counter computer malware. The system comprises a processor, a memory, a data store comprising information about known computer malware, wherein the information about known computer malware is partitioned into a plurality of malware families, and comprising a plurality of mappings, wherein each mapping associates one malware family with at least one countermeasure for mitigating a risk to an information technology asset posed by the known computer malware associated with the malware family, and an application stored in the memory. The application analyzes a software artifact, determines characteristics of the software artifact, and determines a plurality of metrics, each metric representing a degree of match between the software artifact and one of the plurality of malware families. Based on the plurality of metrics, the application further determines a malware family that best matches the software artifact.
机译:识别和对抗计算机恶意软件的系统。该系统包括处理器,存储器,数据存储,该数据存储包括关于已知计算机恶意软件的信息,其中关于已知计算机恶意软件的信息被划分为多个恶意软件家族,并且包括多个映射,其中每个映射将一个恶意软件家族与用于减轻由与恶意软件家族相关联的已知计算机恶意软件和存储在存储器中的应用所构成的信息技术资产的风险的至少一种对策。该应用程序分析软件工件,确定软件工件的特征,并确定多个度量,每个度量代表软件工件与多个恶意软件家族之一之间的匹配程度。基于多个度量,应用程序还确定与软件工件最匹配的恶意软件家族。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号