发明授权
- 专利标题: Silent-mode signature testing in anti-malware processing
- 专利标题(中): 防恶意软件处理中的静音模式签名测试
-
申请号: US13740775申请日: 2013-01-14
-
公开(公告)号: US08819835B2公开(公告)日: 2014-08-26
- 发明人: Denis A. Nazarov
- 申请人: Kaspersky Lab, ZAO
- 申请人地址: RU Moscow
- 专利权人: Kaspersky Lab, ZAO
- 当前专利权人: Kaspersky Lab, ZAO
- 当前专利权人地址: RU Moscow
- 代理机构: Bardmesser Law Group
- 优先权: RU2009142888 20091123
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
Method and computer program product for signature testing used in anti-malware processing. Silent signatures, after being tested, are not updated into a white list and are sent directly to users instead. If the silent signature coincides with malware signature, a user is not informed. A checksum (e.g., hash value) of a suspected file is sent to a server, where statistics are kept and analyzed. Based on collected false positive statistics of the silent-signature, the silent-signature is either valid or invalid. Use of the silent signatures provides for effective signature testing and reduces response time to new malware-related threats. The silent signature method is used for turning off a signature upon first false positive occurrence. Use of silent signatures allows improving heuristic algorithms for detection of unknown malware.
公开/授权文献
- US20130133069A1 SILENT-MODE SIGNATURE TESTING IN ANTI-MALWARE PROCESSING 公开/授权日:2013-05-23
信息查询