Detection of code-based malware
    1.
    发明授权
    Detection of code-based malware 有权
    检测基于代码的恶意软件

    公开(公告)号:US08713679B2

    公开(公告)日:2014-04-29

    申请号:US13031061

    申请日:2011-02-18

    IPC分类号: G06F21/00

    CPC分类号: G06N7/005

    摘要: This document describes techniques for detection of code-based malware. According to some embodiments, the techniques utilize a collection of known malicious code and know benign code and determine which features of each type of code can be used to determine whether unclassified code is malicious or benign. The features can then be used to train a classifier (e.g., a Bayesian classifier) to characterize unclassified code as malicious or benign. In at least some embodiments, the techniques can be used as part of and/or in cooperation with a web browser to inspect web content (e.g., a web page) to determine if the content includes code-based malware.

    摘要翻译: 本文档描述了基于代码的恶意软件检测技术。 根据一些实施例,该技术利用已知恶意代码的集合并且知道良性代码并且确定可以使用每种类型的代码的哪些特征来确定未分类的代码是恶意的还是良性的。 然后可以使用特征来训练分类器(例如,贝叶斯分类器)来将未分类的代码描述为恶意或良性的。 在至少一些实施例中,可以将这些技术用作网页浏览器的一部分和/或与网络浏览器合作来检查网页内容(例如,网页)以确定内容是否包括基于代码的恶意软件。

    DETECTION OF CODE-BASED MALWARE
    2.
    发明申请
    DETECTION OF CODE-BASED MALWARE 有权
    检测基于代码的恶意软件

    公开(公告)号:US20120216280A1

    公开(公告)日:2012-08-23

    申请号:US13031061

    申请日:2011-02-18

    IPC分类号: G06F11/00 G06F15/18

    CPC分类号: G06N7/005

    摘要: This document describes techniques for detection of code-based malware. According to some embodiments, the techniques utilize a collection of known malicious code and know benign code and determine which features of each type of code can be used to determine whether unclassified code is malicious or benign. The features can then be used to train a classifier (e.g., a Bayesian classifier) to characterize unclassified code as malicious or benign. In at least some embodiments, the techniques can be used as part of and/or in cooperation with a web browser to inspect web content (e.g., a web page) to determine if the content includes code-based malware.

    摘要翻译: 本文档描述了基于代码的恶意软件检测技术。 根据一些实施例,该技术利用已知恶意代码的集合并且知道良性代码并且确定可以使用每种类型的代码的哪些特征来确定未分类的代码是恶意的还是良性的。 然后可以使用特征来训练分类器(例如,贝叶斯分类器)来将未分类的代码描述为恶意或良性的。 在至少一些实施例中,可以将这些技术用作网页浏览器的一部分和/或与网络浏览器合作来检查网页内容(例如,网页)以确定内容是否包括基于代码的恶意软件。