发明授权
US08621610B2 Network service for the detection, analysis and quarantine of malicious and unwanted files
有权
用于检测,分析和检测恶意和不需要的文件的网络服务
- 专利标题: Network service for the detection, analysis and quarantine of malicious and unwanted files
- 专利标题(中): 用于检测,分析和检测恶意和不需要的文件的网络服务
-
申请号: US12186014申请日: 2008-08-05
-
公开(公告)号: US08621610B2公开(公告)日: 2013-12-31
- 发明人: Jon Oberheide , Evan Cooke , Farnam Jahanian
- 申请人: Jon Oberheide , Evan Cooke , Farnam Jahanian
- 申请人地址: US MI Ann Arbor
- 专利权人: The Regents of The University of Michigan
- 当前专利权人: The Regents of The University of Michigan
- 当前专利权人地址: US MI Ann Arbor
- 代理机构: Harness, Dickey & Pierce, P.L.C.
- 主分类号: G06F21/00
- IPC分类号: G06F21/00
摘要:
A system is provided for detecting, analyzing and quarantining unwanted files in a network environment. A host agent residing on a computing device in the network environment detects a new file introduced to the computing device and sends the new file to a network service for analysis. The network service is accessible to computing devices in the network environment. An architecture for the network service may include: a request dispatcher configured to receive a candidate file for inspection from a given computing device in the network environment and distribute the candidate file to one or more of a plurality of detection engines, where the detection engines operate in parallel to analyze the candidate file and output a report regarding the candidate file; and a result aggregator configured to receive reports from each of the detection engines regarding the candidate file and aggregates the reports in accordance with an aggregation algorithm.
公开/授权文献
信息查询