发明申请
US20150363598A1 DETECTION OF MALICIOUS SCRIPTING LANGUAGE CODE IN A NETWORK ENVIRONMENT 审中-公开
检测网络环境中的恶意代码语言代码

  • 专利标题: DETECTION OF MALICIOUS SCRIPTING LANGUAGE CODE IN A NETWORK ENVIRONMENT
  • 专利标题(中): 检测网络环境中的恶意代码语言代码
  • 申请号: US14761285
    申请日: 2014-01-16
  • 公开(公告)号: US20150363598A1
    公开(公告)日: 2015-12-17
  • 发明人: Chong XuBing SunNavtej SinghYichong LinZheng Bu
  • 申请人: Chong XUBing SUNNavtej SINGHYichong LINZheng BU
  • 申请人地址: US CA Santa Clara
  • 专利权人: MCAFEE, INC.
  • 当前专利权人: MCAFEE, INC.
  • 当前专利权人地址: US CA Santa Clara
  • 优先权: IN50/KOL/2013 20130116
  • 国际申请: PCT/US2014/011907 WO 20140116
  • 主分类号: G06F21/56
  • IPC分类号: G06F21/56
DETECTION OF MALICIOUS SCRIPTING LANGUAGE CODE IN A NETWORK ENVIRONMENT
摘要:
A method is provided in one example embodiment and includes initiating an execution of a compiled script, evaluating a function called in the compiled script, detecting an execution event based on at least a first criterion, and storing information associated with the execution event in an execution event queue. The method also includes verifying a correlation signature based on information associated with at least one execution event in the execution event queue. In specific embodiments, the method includes evaluating an assignment statement of a script during compilation of the script by a compiler, detecting a compilation event based on at least a second criterion, and storing information associated with the compilation event in a compilation event queue. In yet additional embodiments, the verification of the correlation signature is based in part on information associated with one or more compilation events in the compilation event queue.
信息查询
0/0