The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 11, 2017

Filed:

Jul. 01, 2015
Applicant:

Electronics and Telecommunications Research Institute, Daejeon, KR;

Inventors:

Dongphil Kim, Daejeon, KR;

Inkyoung Kim, Daejeon, KR;

Seokwoo Choi, Daejeon, KR;

Taejoo Chang, Daejeon, KR;

Wonho Kim, Daejeon, KR;

Hyunggeun Oh, Daejeon, KR;

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 17/30 (2006.01); G06F 21/56 (2013.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06F 17/30675 (2013.01); G06F 21/561 (2013.01); G06F 21/564 (2013.01); G06F 21/566 (2013.01); H04L 63/101 (2013.01); H04L 63/145 (2013.01); H04L 63/1408 (2013.01);
Abstract

An apparatus and method for searching for similar malicious code based on malicious code feature information. The apparatus includes a malicious code registration unit for registering input new malicious code as a new malicious code sample, and extracting and registering detailed information of the new malicious code sample, a malicious code analysis unit for analyzing the detailed information of the new malicious code sample, a malicious code DNA extraction unit for extracting malicious code DNA information including malicious code feature information, a malicious code DNA comparison unit for comparing the extracted malicious code DNA information with malicious code DNA information of prestored malicious code samples, and calculating similarities therebetween, and a similar malicious code search unit for calculating, based on the calculated similarities, all similarities between the new malicious code sample and prestored malicious code samples, and extracting a specific number of malicious code samples.


Find Patent Forward Citations

Loading…