会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 6. 发明授权
    • Systems and methods for identifying unique malware variants
    • 用于识别唯一恶意软件变体的系统和方法
    • US08402545B1
    • 2013-03-19
    • US12902479
    • 2010-10-12
    • Joseph ChenChristopher Peterson
    • Joseph ChenChristopher Peterson
    • G06F21/00
    • G06F21/56
    • A computer-implemented, server-side method for identifying unique malware variants may include (1) identifying the creation of a child object by a parent object on a client device, (2) determining that instances of both the parent object and the child object occur relatively infrequently within a user community, (3) classifying, based at least in part on the low prevalence of the parent and child objects within the user community, the child object as a potential security risk, and then (4) providing the child object's classification to at least one computing device in order to enable the computing device to evaluate the trustworthiness of the child object. Corresponding systems, encoded computer-readable media, and client-side methods are also disclosed.
    • 用于识别唯一恶意软件变体的计算机实现的服务器端方法可以包括(1)通过客户端设备上的父对象识别子对象的创建,(2)确定父对象和子对象的实例 (3)至少部分地基于用户社区内的父对象和儿童对象的低流行性将子对象作为潜在的安全风险进行分类,然后(4)提供孩子 对象分类为至少一个计算设备,以便使计算设备能够评估子对象的可信赖性。 还公开了相应的系统,编码的计算机可读介质和客户端方法。
    • 7. 发明授权
    • Proactively analyzing binary files from suspicious sources
    • 从可疑来源主动分析二进制文件
    • US08370942B1
    • 2013-02-05
    • US12403321
    • 2009-03-12
    • Christopher PetersonRobert ConradJoseph H. Chen
    • Christopher PetersonRobert ConradJoseph H. Chen
    • H04L29/06
    • G06F21/562G06F21/577H04L63/145
    • A malware source analysis component determines which sources of malware are sufficiently suspicious such that all binary files located thereon should be analyzed. In order to makes such determinations, the malware source analysis component receives information concerning malware infections from a plurality of sources. The malware source analysis component analyzes the received information, and determines suspiciousness levels associated with specific sources. Responsive to identifying a given threshold suspiciousness level associated with a source, the malware source analysis component adjudicates that source to be suspicious. Where a source is adjudicated to be suspicious, the malware source analysis component submits submission instructions to that source, directing it to identify binary files thereon and submit them to be analyzed. The malware source analysis component receives binary files from suspicious sources according to the submission instructions, and analyzes the received binary files.
    • 恶意软件源分析组件确定哪些恶意软件来源充分可疑,以便分析位于其上的所有二进制文件。 为了做出这样的确定,恶意软件源分析组件从多个源接收关于恶意软件感染的信息。 恶意软件源分析组件分析收到的信息,并确定与特定来源相关的可疑级别。 响应于识别与源相关联的给定阈值可疑性级别,恶意软件源分析组件将该来源判断为可疑。 如果来源被裁定为可疑,则恶意软件源分析组件将提交指令提交给该来源,指示其识别二进制文件并将其提交进行分析。 恶意软件源分析组件根据提交指令从可疑来源接收二进制文件,并分析收到的二进制文件。
    • 9. 发明授权
    • Filtering malware related content
    • 过滤恶意软件相关内容
    • US08302191B1
    • 2012-10-30
    • US12404249
    • 2009-03-13
    • Robert ConradChristopher PetersonJoseph H. Chen
    • Robert ConradChristopher PetersonJoseph H. Chen
    • G06F21/00
    • G06F21/577G06F21/56H04L63/145
    • A submission filtering component filters malware related content received for analysis. The submission filtering component determines an analysis priority rating for each source from which malware related content is received. An analysis priority ratings is based on various factors indicative of how likely the source is to transmit malware related content that is important to analyze. The malware filtering component transforms the received stream of malware related content into a subset to be analyzed, based on the analysis priority ratings associated with sources from which malware related content is received. A malware analysis component analyzes the subset of malware related content.
    • 提交过滤组件过滤收到的用于分析的恶意软件相关内容。 提交过滤组件确定从其接收恶意软件相关内容的每个来源的分析优先级。 分析优先级等级基于各种因素,指示源传输对分析重要的恶意软件相关内容的可能性。 恶意软件过滤组件基于与从其接收恶意软件相关内容的源相关联的分析优先等级,将所接收的恶意软件相关内容流转换为要分析的子集。 恶意软件分析组件分析恶意软件相关内容的子集。