- 专利标题: Detection of malware and malicious applications
-
申请号: US14820265申请日: 2015-08-06
-
公开(公告)号: US10305928B2公开(公告)日: 2019-05-28
- 发明人: David McGrew , Andrew Zawadowskiy , Donovan O'Hara , Saravanan Radhakrishnan , Tomas Pevny , Daniel G. Wing
- 申请人: Cisco Technology, Inc.
- 申请人地址: US CA San Jose
- 专利权人: Cisco Technology, Inc.
- 当前专利权人: Cisco Technology, Inc.
- 当前专利权人地址: US CA San Jose
- 代理机构: Hickman Palermo Becker Bingham LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
A method comprises receiving, at a network infrastructure device, a flow of packets, determining, using the network infrastructure device and for a first subset of the packets, that the first subset corresponds to a first datagram and determining a first length of the first datagram, determining, using the network infrastructure device and for a second subset of the packets, that the second subset corresponds to a second datagram that was received after the first datagram, and determining a second length of the second datagram, determining, using the network infrastructure device, a duration value between a first arrival time of the first datagram and a second arrival time of the second datagram, sending, to a collector device that is separate from the network infrastructure device, the first length, the second length, and the duration value for analysis.
公开/授权文献
- US20160352761A1 DETECTION OF MALWARE AND MALICIOUS APPLICATIONS 公开/授权日:2016-12-01
信息查询