1. Introduction
The proliferation of digital technologies across sectors has led to an unprecedented reliance on computer systems for communication, data storage, finance, and critical infrastructure management. As a result, cybersecurity threats, particularly those involving computer viruses have become a growing concern. Much like biological pathogens, computer viruses depend on host environments such as files, applications, or operating systems to replicate and spread. While early forms of malware were relatively simple and posed limited risk, the rapid advancement of digital connectivity and software complexity has led to the emergence of highly adaptive and damaging threats, including trojans, worms, ransomware, and advanced persistent threats (APTs). These malicious programs can result in severe financial losses, data breaches, operational disruptions, and reputational damage for individuals, institutions, and governments.
Mathematical modeling plays a central role in contemporary research because it provides a bridge between real-world phenomena and their mathematical representation, allowing systematic analysis of complex systems [
1]. Its flexibility has enabled researchers to address current scientific challenges and to make informed predictions about future developments [
2]. Applications of mathematical modeling span a wide range of disciplines, including engineering, biological sciences, and computer networks. In cybersecurity, for example, mathematical models originally designed for epidemiological studies have been effectively adapted to examine the spread of worms and malware in digital environments [
3,
4]. Recent studies further highlight that such models can capture dynamic interactions between malicious attacks and defensive mechanisms, such as antivirus deployment, within network systems [
5]. Consequently, understanding viral behavior in wireless sensor networks has become important for evaluating system stability and improving cybersecurity strategies [
6]. Advances in dynamical system theory and numerical simulation techniques continue to support developments across engineering and scientific disciplines [
7]. Within this context, fractional-order calculus has received significant attention for its ability to generalize classical models and incorporate memory or hereditary effects [
8]. These fractional operators allow a more accurate description of physical, biological, and engineering processes that cannot be fully captured using integer-order derivatives [
9]. Fractional derivatives have therefore become valuable tools in modeling phenomena such as viscoelastic behavior, biological processes, chemical reactions, and frequency-dependent damping in engineering systems [
10,
11]. Understanding the mechanisms behind malware propagation and developing effective containment strategies are critical in mitigating such risks. However, conventional mathematical models typically based on classical differential equations often fall short in capturing the memory effects and long term dependencies characteristic of malware behavior in real-world systems. To address these limitations, fractional calculus has emerged as a robust modeling tool, offering greater flexibility through the use of nonlocal operators that account for historical states of the system. The study by Yang et al. analyzed the impact of patch forwarding on the prevalence of computer viruses. Their findings highlight that the ability of patches to rapidly disseminate across computer networks and become effective immediately upon installation significantly enhances their potential to mitigate virus outbreaks [
12]. A theoretical evaluation of patch forwarding was conducted, leading to the development of a malware epidemic model that accounts for its influence.
In 2017, Achuba examined the transmission of computer viruses by modifying the traditional SIRA model. His research provided insights into virus behavior within a network with antivirus software. The proposed model extended the conventional susceptible-infected-recovered-antidotal (SIRA) framework to a liable-latent-infected-recovered-antidotal (SLIRA) model [
13].
Singh et al. (2018) explored computer virus propagation using fractional derivatives. Given the critical role of computer viruses in cybersecurity, understanding their spread and development is essential. The authors formulated and analyzed a fractional epidemiological model to investigate these aspects [
14]. Similarly, Ali et al. (2018) developed a nonlinear model to study virus prevalence, employing the EPA scheme with a Padé approximation to convert the nonlinear system into an optimization problem [
15].
In 2019, Kyurkchiev et al. proposed differential models to study virus propagation [
16]. Around the same time, Alweimine et al. explored the influence of local routing protocol algorithms on virus transmission, assessing the robustness of various routing techniques [
17].
Arif et al. (2020) conducted numerical simulations to compare stochastic and deterministic models of virus spread [
18]. Upadhyay et al. (2020) focused on targeted cyberattacks, developing a model with two distinct classes: an attacking group and a targeted network. Their analysis examined equilibrium points and stability concerning the basic reproduction number [
19]. Hoang et al. (2021) introduced a fractional-order model for virus transmission using the Caputo derivative and Lyapunov function, ensuring the positivity and boundedness of the solutions [
20]. Shahini et al. (2022) applied a collocation method with Legendre–Gauss–Radau points to address an optimal control problem within a nonlinear delay differential equation framework [
21].
More recently, Avcı et al. (2023) investigated the role of memory effects in virus population dynamics, utilizing a fractional derivative operator to analyze the influence of fractal size and fractional order [
22]. Their research incorporated numerical simulations to explore the effects of different fractional operators on viral spread. To investigate the dynamics of malware propagation, it is essential to analyze how infections spread across computer networks, considering modes of transmission, host interactions, and system vulnerabilities. Such an approach allows for assessing the effectiveness of countermeasures and predicting long-term outcomes. For further reference, see relevant studies on malware modeling and cybersecurity dynamics [
23,
24,
25].
This study examines the role of quarantine and recovery in controlling virus outbreaks. Isolating infected files and deploying antivirus measures contribute to mitigating the spread of malicious software. However, identifying compromised files remains challenging due to latent infections, potentially limiting the effectiveness of quarantine strategies. The structure of this paper is outlined as follows.
Section 2 introduces the fundamental definitions for the subsequent analysis.
Section 3 presents the development of the fractional-order virus transmission model, explaining its architecture and the relationships between different components. In
Section 4, the equilibrium states of the system are explored, along with the derivation of the basic reproduction number and sensitivity analysis, which provides insights into the conditions that determine whether a virus dies out or persists.
Section 5 focuses on establishing the existence of solutions, thereby confirming the mathematical soundness of the proposed model.
Section 6 outlines the numerical method adopted to simulate the system’s dynamics.
Section 7 displays and interprets the simulation results, emphasizing the role of model parameters and evaluating the impact of various intervention strategies. Lastly,
Section 8 concludes the study by summarizing key findings, drawing final observations, and proposing directions for future research.
3. Model Formulation
We define the state variables of the model as follows. Let denote the number of susceptible computers at time t, referring to those that are neither infected nor protected. Let be the number of antidotal computers at time t, including both recently updated and previously patched devices. The variable represents the number of exposed computers at time t, referring to those that have come into contact with the malware and are at risk of infection. Let denote the number of infected computers at time t that require disinfection. Let be the number of quarantined computers at time t, isolated to prevent further malware transmission. The variable captures the number of recovered computers at time t that have regained temporary immunity. The total number of computers in the network at any given time t is denoted by .
The total population of the system is divided into six compartments: Susceptible (
S), Antidotal (
A), Exposed (
E), Infected (
I), Quarantined (
Q), and Recovered (
R). At any time
t, these compartments satisfy the relation:
In the SAEIQRS framework, a portion of the susceptible individuals, , gain protection and move into the antidotal state, . Meanwhile, others shift into the exposed state, , where the infection is present but not yet active. Individuals in the exposed state may transition to the infected class, as the infection advances. The progression from infection depends on their level of antidotal resistance with sufficient immunity to recover and move to the recovered state, . In contrast, others may relapse and return to the exposed state, , emphasizing the potential for reinfection.
Infected humanoids may either remain in the infected class while contagious or be restored to the recovered class after receiving updates or antivirus protection. Alternatively, some infected humanoids are moved into the quarantine class , where they remain until they recover and transition to . However, in the cyber world, immunity is temporary, meaning recovered humanoids eventually revert to the susceptible class , making them vulnerable to reinfection.
To describe the evolution of the system over time, we consider the following set of differential equations,
These equations describe the flow between compartments, capturing the dynamics of the system as individuals transition from one state to another.
To construct the ABC–fractional version of the system, the standard first-order time derivative on the left-hand side of the governing equations is replaced by the ABC–fractional operator, as introduced earlier. This adjustment results in a generalized formulation, yielding an ABC–fractional model that describes the dynamics of the computer network more accurately.
Initially, new computers introduced into the network are assumed to be virus-free and are classified as susceptible. These susceptible systems can adopt antivirus measures, either outdated or updated, at a rate . Susceptible and antidotal computers may come into contact with infected systems, becoming exposed at rates and , respectively. Antidotal computers that have been updated recover and move to the recovered state at a rate . All computers, regardless of their infection status, experience a natural failure rate denoted by . After an incubation period, exposed computers progress to the infected state at a rate . Infected systems can either recover at rate or be transferred to quarantine at rate . Quarantined computers regain their functionality and move to the recovered state at rate . However, the immunity of recovered systems is temporary, and these units can return to the susceptible class at rate .
The parameter
B denotes the rate of introduction of new devices to the network. The natural failure rate
applies to all systems regardless of infection status. The rate
captures the rate of device breakdown caused by the infection itself. The parameter
describes the rate at which the virus spreads from infected to susceptible units, leading to their transition from
S to
E. The parameter
governs the movement of susceptible units into the antidotal state, where
means no antivirus protection is applied. The rate
characterizes the transition of antidotal units that have not been updated to the exposed state after contact with infected units. The parameter
governs recovery of antidotal units that have been updated, allowing their movement from
A to
R. The rate
describes the progression from exposed to infected status. The parameters
and
govern the recovery of infected units (
) and their placement into quarantine (
), respectively. The rate
applies to the recovery of quarantined units (
), while
governs the loss of immunity, allowing recovered units to return to the susceptible class (
).
where the initial conditions are,
5. Existence of Solution
This section establishes the existence of solutions for the computer virus transmission model governed by the ABC-fractional derivative using fixed-point theory.
Definition 4. Let ϕ be a function defined on time and . The Atangana–Baleanu (AB) fractional integral of order ρ is defined by,where the coefficients and are given as, Consider the Banach space
of all continuous functions on the interval
. Define the product space,
by using the norm,
where,
Applying the fractional integral operator to system (
2) results in the following integral equations,
Using the definition (
8), the above can be rewritten as,
where the functions
,
, are defined as,
Each
satisfies the Lipschitz condition provided that
remain bounded.
For instance, for two functions
and
, the following estimate holds,
where
is a positive constant depending on parameters and variables. Similarly, the other
satisfy,
with suitable constants
. Defining iterative sequences,
starting from initial data
, the differences satisfy,
By applying the Lipschitz conditions and fractional integral properties, one obtains the inequalities,
Theorem 1. If the following condition is met for each ,then for , there exists a unique solution to the fractional epidemic system (2). Proof. Since the functions
are bounded and the functions
satisfy the Lipschitz condition, applying the recursive inequality (
13) yields geometric convergence of the successive approximations. Specifically,
which implies the sequences
are Cauchy and hence converge uniformly in
. By passing to the limit in (
11), the limit functions satisfy system (
2), guaranteeing existence and uniqueness of the solution. □
6. Numerical Scheme
Toufik and Atangana [
26] developed a highly efficient numerical scheme for solving fractional differential equations with non-singular, non-local kernels. Their approach delivers superior accuracy and rapid convergence, effectively overcoming the limitations of traditional methods such as Euler and Adams–Bashforth when dealing with complex fractional dynamics.
Consider the general nonlinear ABC fractional differential equation,
Using fractional integral theory, this can be equivalently expressed as,
At the discrete grid points
for
, the above equation takes the form,
On each subinterval
, the function
is approximated by the linear interpolant,
where
. Substituting this into (
17) and performing the integration yields,
Define the integrals,
Closed-form solutions for these integrals are given by,
By substituting these results into (
18), we obtain the fully discrete scheme,
Applying the scheme (
23) to each compartment
in system (
2), governed by,
leads to the update formula,
where,
and the functions for each compartment are,
7. Numerical Analysis
Extensive numerical simulations were conducted to explore the transmission dynamics of the computer virus using the ABC fractional-order model. The system of differential equations was solved using a Runge–Kutta method to gain preliminary insights into the system’s behavior before considering the complexities introduced by fractional calculus. The initial conditions were set to represent a largely susceptible network as follows:
,
,
,
,
,
. Model-stimulated parameters, informed by realistic network and infection dynamics, were assigned as:
,
,
,
,
,
,
,
,
, and
. The simulations were run over an adequate time span to capture the complete progression of the virus spread, including infection peaks and subsequent recovery phases. The results, displayed across several figures, provide detailed insights into the evolution of the system across different states of vulnerability and protection within the network.
Figure 2 represents the population of susceptible computers and devices at risk of infection. Initially, their numbers declined due to exposure to infected systems and the implementation of antivirus defenses. Transmission coefficients and cybersecurity measures in place influence the rate of decline.
Figure 3 highlights the antidotal computers, referring to systems that have received antivirus updates. The graph demonstrates how security patches mitigate infection risks and enhance network resilience.
Figure 4 illustrates the exposed computer devices that have encountered infected systems but are not yet compromised. Latency factors and the network interaction frequency govern the transition from exposure to infection.
Figure 5 portrays the infected computers, emphasizing the virus’s progression without timely security updates. The peak infection levels indicate the outbreak’s severity and the effectiveness of containment strategies.
Figure 6 depicts quarantined computers, which are isolated to prevent further viral transmission. A growing number in this category reflects the success of containment efforts in reducing the spread.
Figure 7 showcases the recovered computers, which have undergone disinfection or received security updates. Due to the temporary nature of immunity, some systems may revert to the susceptible state, thereby sustaining the risk of reinfection. The 3D numerical simulations in
Figure 8,
Figure 9,
Figure 10,
Figure 11,
Figure 12 and
Figure 13 show how time and the fractional-order parameter influence the behavior of all compartments in the computer virus model.
Figure 8 describes the surface plot for the susceptible class, showing a gradual decrease as time progresses, due to the systems losing susceptibility because of exposure and infection.
Figure 9 describes the surface plot for the antidotal (patched) class, showing that initially, the surface rises before leveling off. This reflects the buildup of patched systems, which stabilizes once the rates of patching and transition are equal.
Figure 10 describes the exposed class, where the surface plot takes the form of a hump-shaped surface. This shows that systems linger in an incubation-like stage before going into an infected status. The width of the hump changes with the fractional parameter, reflecting memory effects on the length of time systems stay exposed.
Figure 11 shows the infected class as a function of time and fractional-order parameter as a large peak. The fractional order influences the peak’s width and height, where lower orders produce wider, smoother peaks (outbreaks), and higher orders produce narrower spikes.
Figure 12 shows the quarantined class in the form of a delayed ridge that increases after the peak of infected classes has risen. It is representative of a natural delay between the point at which an infection is detected and isolation occurs. Finally,
Figure 13 describes the recovery class as a surface that steadily rises and eventually approaches a plateau. It characterizes the gradual stabilization of the system as the infected or quarantined machines get back to a safe status. These 3D plots taken together thus illustrate how the timing and fractional-order memory affect the process of malware transmission across all compartments. The findings from this computational study validate the proposed model, demonstrating how key factors such as antivirus interventions, quarantine measures, and recovery mechanisms influence virus transmission dynamics in computer networks. By analyzing these trends, cybersecurity strategies can be refined to enhance protection against digital threats and improve overall system security.