Full metadata record
DC FieldValueLanguage
dc.contributor.authorChiang Yi-Taen_US
dc.contributor.authorLin Ying-Daren_US
dc.contributor.authorWu Yu-Sungen_US
dc.contributor.authorLai Yuan-Chengen_US
dc.date.accessioned2014-12-16T06:15:13Z-
dc.date.available2014-12-16T06:15:13Z-
dc.date.issued2012-05-17en_US
dc.identifier.govdocG06F011/00zh_TW
dc.identifier.urihttp://hdl.handle.net/11536/105178-
dc.description.abstractA machine-implemented method for determining whether a to-be-analyzed software is a known malware or a variant of the known malware includes the steps of: (A) configuring a processor to execute the to-be-analyzed software, and obtain a to-be-analyzed system call sequence that corresponds to the to-be-analyzed software with reference to a plurality of system calls made in sequence as a result of executing the to-be-analyzed software; (B) configuring the processor to determine a degree of similarity between the to-be-analyzed system call sequence and a reference system call sequence that corresponds to the known malware; and (C) configuring the processor to determine that the to-be-analyzed software is neither the known malware nor a variant of the known malware when the degree of similarity determined in step (B) is not greater than a predefined similarity threshold value.zh_TW
dc.language.isozh_TWen_US
dc.titleMACHINE-IMPLEMENTED METHOD AND SYSTEM FOR DETERMINING WHETHER A TO-BE-ANALYZED SOFTWARE IS A KNOWN MALWARE OR A VARIANT OF THE KNOWN MALWAREzh_TW
dc.typePatentsen_US
dc.citation.patentcountryUSAzh_TW
dc.citation.patentnumber20120124667zh_TW
Appears in Collections:Patents


Files in This Item:

  1. 20120124667.pdf

If it is a zip file, please download the file and unzip it, then open index.html in a browser to view the full text content.