首页> 外国专利> Inferring file and website reputations by belief propagation leveraging machine reputation

Inferring file and website reputations by belief propagation leveraging machine reputation

机译:通过信念传播利用机器声誉来推断文件和网站声誉

摘要

The probability of a computer file being malware is inferred by iteratively propagating domain knowledge among computer files, related clients, and/or related source domains. A graph is generated to include machine nodes representing clients, file nodes representing files residing on the clients, and optionally domain nodes representing source domains hosting the files. The graph also includes edges connecting the machine nodes with the related file nodes, and optionally edges connecting the domain nodes with the related file nodes. Priors and edge potentials are set for the nodes and the edges based on related domain knowledge. The domain knowledge is iteratively propagated and aggregated among the connected nodes through exchanging messages among the connected nodes. The iteration process ends when a stopping criterion is met. The classification and associated marginal probability for each file node are calculated based on the priors, the received messages, and the edge potentials associated with the edges through which the messages were received.
机译:通过在计算机文件,相关客户端和/或相关源域之间迭代传播域知识,可以推断出计算机文件为恶意软件的可能性。生成的图包括代表客户端的机器节点,代表客户端上驻留的文件的文件节点以及代表托管文件的源域的可选域节点。该图还包括将机器节点与相关文件节点连接的边缘,以及可选地,将域节点与相关文件节点连接的边缘。基于相关领域知识为节点和边缘设置先验和边缘电势。通过在连接的节点之间交换消息,域知识在连接的节点之间迭代地传播和聚集。满足停止条件时,迭代过程结束。基于先验,接收到的消息以及与通过其接收消息的边缘相关联的边缘电位,计算每个文件节点的分类和相关的边际概率。

著录项

  • 公开/公告号US8701190B1

    专利类型

  • 公开/公告日2014-04-15

    原文格式PDF

  • 申请/专利权人 SYMANTEC CORPORATION;

    申请/专利号US201213677914

  • 发明设计人 DUEN HONG CHAU;ADAM WRIGHT;

    申请日2012-11-15

  • 分类号G06F11/00;G06F7/04;G06F15/173;

  • 国家 US

  • 入库时间 2022-08-21 16:02:16

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号