作者: Duen Horng Chau , Adam Wright
DOI:
关键词:
摘要: The probability of a computer file being malware is inferred by iteratively propagating domain knowledge among files, related clients, and/or source domains. A graph generated to include machine nodes representing files residing on the and optionally domains hosting files. also includes edges connecting with nodes, nodes. Priors edge potentials are set for based knowledge. propagated aggregated connected through exchanging messages iteration process ends when stopping criterion met. classification associated marginal each node calculated priors, received messages, which were received.