首页> 外国专利> BYTE SEQUENCE EXTRACTION DEVICE, BYTE SEQUENCE EXTRACTION METHOD, AND BYTE SEQUENCE EXTRACTION PROGRAM

BYTE SEQUENCE EXTRACTION DEVICE, BYTE SEQUENCE EXTRACTION METHOD, AND BYTE SEQUENCE EXTRACTION PROGRAM

机译:字节序列提取设备,字节序列提取方法和字节序列提取程序

摘要

PROBLEM TO BE SOLVED: To detect malware without fail and to decrease throughput reduction in the detection.;SOLUTION: When an attack to vulnerability is detected, a byte sequence extraction device determines files acquired in relation to the attack as malware. Among the files determined as malware, a file in which malware is not detected by existent malware detection software is determined as a file of unknown malware. The byte sequence extraction device extracts a byte sequence of a predetermined length that is not present in an innocent file which is any other file than malware but is present in the file of unknown malware. The byte sequence extracted in such a manner is used as a signature of malware and matching with communication data is performed.;COPYRIGHT: (C)2015,JPO&INPIT
机译:解决的问题:能够毫无故障地检测恶意软件并降低检测的吞吐量。解决方案:检测到对漏洞的攻击时,字节序列提取设备会将与攻击有关的文件确定为恶意软件。在被确定为恶意软件的文件中,现有恶意软件检测软件未检测到恶意软件的文件被确定为未知恶意软件的文件。字节序列提取设备提取预定长度的字节序列,该字节序列不存在于无害文件中,该无害文件是除恶意软件之外的任何其他文件,但存在于未知恶意软件的文件中。以这种方式提取的字节序列用作恶意软件的签名,并与通信数据进行匹配。版权所有:(C)2015,JPO&INPIT

著录项

  • 公开/公告号JP2015106336A

    专利类型

  • 公开/公告日2015-06-08

    原文格式PDF

  • 申请/专利权人 NIPPON TELEGR & TELEPH CORP NTT;

    申请/专利号JP20130249034

  • 发明设计人 AOKI KAZUFUMI;HARIO TAKEO;

    申请日2013-12-02

  • 分类号G06F21/56;

  • 国家 JP

  • 入库时间 2022-08-21 15:32:46

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号