首页> 外国专利> METHODS AND APPARATUS TO DETECT MALWARE BASED ON NETWORK TRAFFIC ANALYSIS

METHODS AND APPARATUS TO DETECT MALWARE BASED ON NETWORK TRAFFIC ANALYSIS

机译:基于网络流量分析检测恶意软件的方法和装置

摘要

Methods, apparatus, systems and articles of manufacture are disclosed to detect malware based on network traffic analysis. An example apparatus includes a classification controller to: in response to a first classification score of a first network traffic sample satisfying a first threshold, determine whether a second classification score of a second network traffic sample satisfies a second threshold; and in response to the second classification score of the second network traffic sample satisfying the second threshold, classify network traffic associated with the first network traffic sample and the second network traffic sample as potentially malicious network traffic; and a remediation controller to, in response to the network traffic being classified as the potentially malicious network traffic, execute a remediation action to remediate malicious activity associated with the potentially malicious network traffic.
机译:公开了方法,装置,系统和制品,用于检测基于网络流量分析的恶意软件。示例装置包括分类控制器:响应于满足第一阈值的第一网络业务样本的第一分类评分,确定第二网络业务样本的第二分类评分是否满足第二阈值;并且响应于满足第二阈值的第二网络流量样本的第二分类评分,将与第一网络流量样本和第二网络流量样本相关联的网络流量作为潜在恶意网络流量来分类;和一个修复控制器,以响应于网络流量被归类为潜在恶意网络流量,执行修复操作以修复与潜在恶意网络流量相关联的恶意活动。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号