会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明授权
    • Computer virus detection systems and methods
    • 计算机病毒检测系统和方法
    • US08782791B2
    • 2014-07-15
    • US12958306
    • 2010-12-01
    • Anand D. Sankruthi
    • Anand D. Sankruthi
    • G06F21/00H04L29/06G06F21/56
    • H04L63/145G06F21/564G06F21/566H04L63/1416H04L63/1425H04L63/1491
    • Systems and methods for computer virus detection are presented. In one embodiment; an computer virus detection method includes: receiving an indication of a change to a file; performing a virus analysis process, including executing the changes to the file in a virtual machine and examining results of the executing the changes; and handling the file based upon the virus analysis. The virus analysis can be performed in a system in which the change to the file occurs. Handling the file can include treating the file as potentially infected with a virus based upon the virus analysis. In one exemplary implementation, examining the results includes comparing the results of executing the changes to the file to other results from executing changes to another file, wherein the file is identified as potentially infected with a virus if the examining results indicates the results of executing the changes to the file are similar to results from executing changes to another file. Examining results includes examining behavior resulting from executing the file (e.g., examining system calls, etc.). Outcome of the examining results can be forwarded for utilization in developing virus data sets.
    • 介绍了计算机病毒检测的系统和方法。 在一个实施例中; 计算机病毒检测方法包括:接收对文件的改变的指示; 执行病毒分析过程,包括在虚拟机中执行文件的更改并检查执行变化的结果; 并根据病毒分析处理文件。 病毒分析可以在文件发生变化的系统中执行。 处理文件可以包括根据病毒分析将文件视为可能感染病毒。 在一个示例性实现中,检查结果包括将执行文件的更改的结果与执行对另一文件的改变的其他结果进行比较,其中如果检查结果指示执行结果的话,则该文件被识别为可能被病毒感染 对文件的更改类似于对另一个文件执行更改的结果。 检查结果包括检查执行文件导致的行为(例如,检查系统调用等)。 检查结果的结果可以转发用于开发病毒数据集。
    • 4. 发明申请
    • COMPUTER VIRUS DETECTION SYSTEMS AND METHODS
    • 计算机病毒检测系统和方法
    • US20120144488A1
    • 2012-06-07
    • US12958306
    • 2010-12-01
    • Anand D. Sankruthi
    • Anand D. Sankruthi
    • G06F21/00
    • H04L63/145G06F21/564G06F21/566H04L63/1416H04L63/1425H04L63/1491
    • Systems and methods for computer virus detection are presented. In one embodiment; an computer virus detection method includes: receiving an indication of a change to a file; performing a virus analysis process, including executing the changes to the file in a virtual machine and examining results of the executing the changes; and handling the file based upon the virus analysis. The virus analysis can be performed in a system in which the change to the file occurs. Handling the file can include treating the file as potentially infected with a virus based upon the virus analysis. In one exemplary implementation, examining the results includes comparing the results of executing the changes to the file to other results from executing changes to another file, wherein the file is identified as potentially infected with a virus if the examining results indicates the results of executing the changes to the file are similar to results from executing changes to another file. Examining results includes examining behavior resulting from executing the file (e.g., examining system calls, etc.). Outcome of the examining results can be forwarded for utilization in developing virus data sets.
    • 介绍了计算机病毒检测的系统和方法。 在一个实施例中; 计算机病毒检测方法包括:接收对文件的改变的指示; 执行病毒分析过程,包括在虚拟机中执行文件的更改并检查执行变化的结果; 并根据病毒分析处理文件。 病毒分析可以在文件发生变化的系统中执行。 处理文件可以包括根据病毒分析将文件视为可能感染病毒。 在一个示例性实现中,检查结果包括将执行文件的更改的结果与执行对另一文件的改变的其他结果进行比较,其中如果检查结果指示执行结果的话,则该文件被识别为可能被病毒感染 对文件的更改类似于对另一个文件执行更改的结果。 检查结果包括检查执行文件导致的行为(例如,检查系统调用等)。 检查结果的结果可以转发用于开发病毒数据集。