Bot process detecting and classifying method combining with dynamic and static characteristics
A technology of bots and static features, applied in the field of information security, can solve the problems of low efficiency, long time, and difficulty in solving a large number of bots, so as to reduce the requirements and improve the correctness.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0038] The present invention will be described in detail below with reference to the accompanying drawings and examples.
[0039] The invention provides a bot detection and classification method combining dynamic and static features, such as figure 1 shown, including the following steps:
[0040] Step 1: Bot detection
[0041] Bots can be distinguished from other malicious codes by using opcode (a machine code used to describe a certain operation in machine language), PE (Portable Execution) section information and DLL (Dynamic Link Library) sequence. Static detection has the advantages of high security and high detection efficiency. The feature selection in the detection process adopts the optimized TF-IDF-GF algorithm.
[0042] The main process is as follows:
[0043] The core idea of TF-IDF is that the importance of a feature item increases with the number of times it appears in the file, but at the same time it decreases with the frequency of its appearance in the fe...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com