发明名称 SYSTEM AND METHOD OF REDUCING NUMBER OF DETERMINATION OF LEGITIMATE FILE AS MALWARE
摘要 FIELD: cryptography; information technology.SUBSTANCE: invention relates to computer security. Method, in which record in database containing rule for detecting malware; collection of legitimate files is created accounting such criteria, as effect of collection of files on stability of operating system (OS) and stability of applications of collection of files, popularity of files in collection; created collection of legitimate files is checked for detection of malware using rule for detecting malware contained in said record; if legitimate file is determined as malware, determination incident criticality is calculated, reflecting effect of legitimate file, determined as malware, on OS stability and stability of applications; on basis of calculation of determination incident criticality record is excluded, which includes rule for detecting malware, with which legitimate file was defined as malware, from data base for reducing number of determination of legitimate file objects as malware.EFFECT: technical result consists in minimizing number of false responses, when detecting malware.34 cl, 4 dwg, 2 tbl
申请公布号 RU2602369(C2) 申请公布日期 2016.11.20
申请号 RU20150111429 申请日期 2015.03.31
申请人 Zakrytoe aktsionernoe obshchestvo "Laboratorija Kasperskogo" 发明人 Malanov Aleksej Vladimirovich;Savitskij Andrej Stanislavovich;Ladikov Andrej Vladimirovich
分类号 G06F21/56;G06F11/00 主分类号 G06F21/56
代理机构 代理人
主权项
地址