- Patent Title: Log analysis device, log analysis method, and log analysis program
-
Application No.: US16311040Application Date: 2017-06-07
-
Publication No.: US11057411B2Publication Date: 2021-07-06
- Inventor: Kensuke Nakata
- Applicant: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
- Applicant Address: JP Chiyoda-ku
- Assignee: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
- Current Assignee: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
- Current Assignee Address: JP Chiyoda-ku
- Agency: Oblon, McClelland, Maier & Neustadt, L.L.P.
- Priority: JPJP2016-124554 20160623
- International Application: PCT/JP2017/021167 WO 20170607
- International Announcement: WO2017/221711 WO 20171228
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55 ; G06F21/56

Abstract:
A log acquirer acquires a communication log to be analyzed obtained from communications in a predetermined network. A log analyzer detects a terminal conforming to an analysis rule using a signature generated based on the characteristics of a communication log generated by a terminal infected with malware. A primary scorer and a secondary scorer calculate a score indicating the degree of threat for a detection result including the information on the terminal detected by the log analyzer and an analysis rule to which the terminal conforms using the information on the analysis rule and the information on the detection result. A detection result display unit outputs the detection result and the score calculated by the primary scorer and the secondary scorer.
Public/Granted literature
- US20190182283A1 LOG ANALYSIS DEVICE, LOG ANALYSIS METHOD, AND LOG ANALYSIS PROGRAM Public/Granted day:2019-06-13
Information query