会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 10. 发明授权
    • Apparatus and methods for remote classification of unknown malware
    • 用于远程分类未知恶意软件的设备和方法
    • US08769683B1
    • 2014-07-01
    • US12498901
    • 2009-07-07
    • Jonathan James Oliver
    • Jonathan James Oliver
    • G06F21/00G06F21/56H04L29/06G06F21/64
    • G06F21/561G06F21/56G06F21/564G06F21/64H04L63/145
    • One embodiment relates to an apparatus for remote classification of malware. Computer-readable code is configured to be executed by the processor so as to receive a locality-sensitive hash (LSH) value associated with a file from a host computer via the network interface, determine whether the LSH value associated with the file is similar to a LSH value in an entry in an LSH data structure, and indicate that the file is a variant of known malware associated with the entry if the LSH value associated with the file is similar to the LSH value in the entry. Another embodiment relates to a method for remote classification of malware. Another embodiment relates to an apparatus configured to determine whether a file includes malware. Another embodiment relates to a method for detecting malware within an institutional network. Other embodiments, aspects and features are also disclosed.
    • 一个实施例涉及用于远程分类恶意软件的装置。 计算机可读代码被配置为由处理器执行以便经由网络接口​​从主计算机接收与文件相关联的位置敏感散列(LSH)值,确定与该文件相关联的LSH值是否类似于 LSH数据结构中的条目中的LSH值,并且如果与该文件相关联的LSH值类似于条目中的LSH值,则表示该文件是与条目相关联的已知恶意软件的变体。 另一实施例涉及用于远程分类恶意软件的方法。 另一个实施例涉及一种被配置为确定文件是否包括恶意软件的装置。 另一实施例涉及用于检测机构网络内的恶意软件的方法。 还公开了其它实施例,方面和特征。