发明名称 Method for Detection of Persistent Malware on a Network Node
摘要 The present invention relates to methods and devices for detecting persistency of a first network node (12). In a first aspect of the invention, a method is provided comprising the steps of monitoring (S101), during a specified observation period, whether the first network node has established a connection to a second network node (13), and determining (S102) a total number of sessions of connectivity occurring during said specified observation period in which the first network node connects to the second network node. Further, the method comprises the steps of determining (S103), from the total number of sessions, a number of sessions comprising at least one communication flow between the first network node and the second network node, and determining (S104) inter-session persistence of the first network node on the basis of the total number of sessions and the number of sessions comprising at least one communication flow.
申请公布号 US2015180898(A1) 申请公布日期 2015.06.25
申请号 US201214363484 申请日期 2012.04.02
申请人 Liljenstam Michael;Méhes András;Salmela Patrik 发明人 Liljenstam Michael;Méhes András;Salmela Patrik
分类号 H04L29/06;H04L12/26 主分类号 H04L29/06
代理机构 代理人
主权项
地址 Solna SE