完整後設資料紀錄
DC 欄位語言
dc.contributor.authorChiang Yi-Taen_US
dc.contributor.authorLin Ying-Daren_US
dc.contributor.authorWu Yu-Sungen_US
dc.contributor.authorLai Yuan-Chengen_US
dc.date.accessioned2014-12-16T06:13:59Z-
dc.date.available2014-12-16T06:13:59Z-
dc.date.issued2013-08-06en_US
dc.identifier.govdocG06F011/00zh_TW
dc.identifier.govdocG06F007/04zh_TW
dc.identifier.govdocG08B023/00zh_TW
dc.identifier.govdocG06F017/30zh_TW
dc.identifier.urihttp://hdl.handle.net/11536/104455-
dc.description.abstractA machine-implemented method for determining whether a to-be-analyzed software is a known malware or a variant of the known malware includes the steps of: (A) configuring a processor to execute the to-be-analyzed software, and obtain a to-be-analyzed system call sequence that corresponds to the to-be-analyzed software with reference to a plurality of system calls made in sequence as a result of executing the to-be-analyzed software; (B) configuring the processor to determine a degree of similarity between the to-be-analyzed system call sequence and a reference system call sequence that corresponds to the known malware; and (C) configuring the processor to determine that the to-be-analyzed software is neither the known malware nor a variant of the known malware when the degree of similarity determined in step (B) is not greater than a predefined similarity threshold value.zh_TW
dc.language.isozh_TWen_US
dc.titleMachine-implemented method and system for determining whether a to-be-analyzed software is a known malware or a variant of the known malwarezh_TW
dc.typePatentsen_US
dc.citation.patentcountryUSAzh_TW
dc.citation.patentnumber08505099zh_TW
顯示於類別:專利資料


文件中的檔案:

  1. 08505099.pdf

若為 zip 檔案,請下載檔案解壓縮後,用瀏覽器開啟資料夾中的 index.html 瀏覽全文。