会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Systems and methods for classifying package files as trojans
    • 将包文件分类为木马的系统和方法
    • US09311481B1
    • 2016-04-12
    • US14486424
    • 2014-09-15
    • Symantec Corporation
    • Abubakar WawdaMatthew YeoJun Mao
    • G06F21/56H04L29/06
    • H04L63/145G06F21/51G06F21/563H04L63/1416
    • A computer-implemented method for classifying package files as Trojans may include (1) detecting a resemblance between an unclassified package file and a known legitimate package file, (2) determining that the unclassified package file is signed by a different signatory than a signatory that signed the known legitimate package file, (3) determining that a feature of the unclassified package file is suspicious, the feature being absent from the known legitimate package file, and (4) classifying the unclassified package file as a Trojan version of the known legitimate package file based on the unclassified package file being signed by the different signatory and having the suspicious feature. Various other methods, systems, and computer-readable media are also disclosed.
    • 用于将包文件分类为木马的计算机实现的方法可以包括(1)检测未分类包文件和已知合法包文件之间的相似性,(2)确定未分类包文件由签名者签名的签名者 签名已知的合法包文件,(3)确定未分类的包文件的特征是可疑的,该特征不在已知的合法包文件中,以及(4)将未分类的包文件分类为已知合法的包装文件的木马版本 基于未分类的包文件由不同签名人签名并具有可疑特征的包文件。 还公开了各种其它方法,系统和计算机可读介质。