会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 8. 发明授权
    • Method and apparatus for retroactively detecting malicious or otherwise undesirable software as well as clean software through intelligent rescanning
    • 用于通过智能重新扫描追溯检测恶意或其他不良软件以及清洁软件的方法和装置
    • US09245120B2
    • 2016-01-26
    • US13942360
    • 2013-07-15
    • Cisco Technology, Inc.
    • Oliver FriedrichsAlfred HugerZulfikar Ramzan
    • G06F12/14G06F21/56
    • G06F21/565G06F17/30091G06F17/30368G06F21/552G06F21/56G06F21/562G06F21/564G06F2221/033
    • The present invention relates to the security of general purpose computing devices, such as laptop or desktop PCs, and more specifically to the detection of malicious software (malware) on a general purpose computing device. A challenge in detecting malicious software is that files are typically scanned for the presence of malicious intent only once (and subsequent rescanning is typically performed in a simplistic manner). Existing methods in the art do not address how to most effectively rescan collections of files in a way that tries to optimize performance and efficacy. Accordingly we present novel methods, components, and systems for intelligently rescanning file collections and thereby enabling retroactive detection of malicious software and also retroactive identification of clean software. These methods may also be useful if additional information is now available regarding a file that might be useful to an end-user or an administrator, even though the file's core disposition might not have changed. More specifically, we describe methods, components, and systems that perform data analytics to intelligently rescan file collections for the purpose of retroactively identifying malware and retroactively identifying clean files. The disclosed invention provides a significant improvement with regard to efficacy and performance compared to previous approaches.
    • 本发明涉及通用计算设备(例如膝上型或台式PC)的安全性,更具体地涉及在通用计算设备上检测恶意软件(恶意软件)。 检测恶意软件的一个挑战是通常只扫描文件一次存在恶意意图(后来的重新扫描通常以简单的方式执行)。 本领域中现有的方法并不涉及如何以尝试优化性能和功效的方式最有效地重新扫描文件集合。 因此,我们提出了用于智能重新扫描文件集合的新方法,组件和系统,从而实现恶意软件的追溯检测,以及清理软件的追溯识别。 如果有关可能对最终用户或管理员可能有用的文件的附加信息,即使该文件的核心配置可能没有更改,这些方法也可能很有用。 更具体地说,我们描述执行数据分析以智能地重新扫描文件集合的方法,组件和系统,目的是追溯识别恶意软件和追溯识别干净的文件。 与先前的方法相比,所公开的发明提供了关于功效和性能的显着改进。