发明名称 Automatic extraction of signatures for Malware
摘要 <p>Method for the automatic generation of malware signatures from computer files. A common function library (CFL) is created, wherein the CFL contains any functions identified as a part of the standard computer language used to write computer files which are known as not containing malware. The functions of a computer file which does contain a malware are extracted and the CFL is updated with any new common functions if necessary, such that the remaining functions are all considered as candidates for generating the malware signature. The remaining functions are divided into clusters according to their location in the file and the optimal cluster for generating the malware signature is determined. One or more of the functions in the optimal cluster is selected randomly, as the malware signature.</p>
申请公布号 EP1959367(B1) 申请公布日期 2012.09.19
申请号 EP20080003001 申请日期 2008.02.19
申请人 DEUTSCHE TELEKOM AG 发明人 TAHAN, GIL;SHABTAI, ASAF;ELOVICI, YUVAL
分类号 G06F21/56 主分类号 G06F21/56
代理机构 代理人
主权项
地址
您可能感兴趣的专利