- 专利标题: Method and system for virus detection using pattern matching techniques
-
申请号: US11036846申请日: 2005-01-14
-
公开(公告)号: US20060161984A1公开(公告)日: 2006-07-20
- 发明人: Thomas Phillips , Christopher Schoppa , William Westerinen
- 申请人: Thomas Phillips , Christopher Schoppa , William Westerinen
- 申请人地址: US WA Redmond
- 专利权人: Mircosoft Corporation
- 当前专利权人: Mircosoft Corporation
- 当前专利权人地址: US WA Redmond
- 主分类号: G06F12/14
- IPC分类号: G06F12/14 ; H04L9/32 ; G06F11/00 ; G06F11/30 ; G06F11/22 ; G06F11/32 ; G06F11/34 ; G06F11/36 ; G06F12/16 ; G06F15/18 ; G08B23/00
摘要:
A method and system for providing virus detection. A virus detection system provides for the use of pattern matching techniques on data at a binary level for virus detection. Whenever an incoming data stream is received, the data stream is segmented into time-based data frames. The time-based data frames are processed to generate associated data frame images utilizing signal processing identification and filter techniques. One or more data frame images are compared to a stored virus image utilizing pattern analysis techniques. A pattern match value associated with each data frame image is generated based on the comparison and a determination is made as to whether or not the pattern match value exceeds a pattern match value threshold. When the pattern match value exceeds the pattern match value threshold, a pattern associated with the virus image is removed from the time-based frames to produce a filtered data stream.
公开/授权文献
信息查询