发明授权
US08925088B1 Method and apparatus for automatically excluding false positives from detection as malware 有权
用于自动排除检测中的误报的恶意软件的方法和装置

Method and apparatus for automatically excluding false positives from detection as malware
摘要:
A method and apparatus for automatically excluding false positives from detection as malware is described. In one embodiments, a method for using one or more processors to provide false positive reduction for heuristic-based malware detection of a plurality of files in memory includes accessing global first appearance information associated with a plurality of files, accessing global malware information comprising heuristics and an emergence date associated with each malware group of a plurality of malware groups, comparing the global malware information with the global first appearance information to identify at least one false positive amongst the plurality of files and preventing detection of the at least one false positive as malware.
信息查询
0/0