Invention Grant
- Patent Title: Systems and methods for detecting malicious documents based on component-object reuse
- Patent Title (中): 基于组件对象重用检测恶意文档的系统和方法
-
Application No.: US14073815Application Date: 2013-11-06
-
Publication No.: US09317679B1Publication Date: 2016-04-19
- Inventor: Sandeep Bhatkar , Fanglu Guo , Susanta Nanda
- Applicant: Symantec Corporation
- Applicant Address: US CA Mountain View
- Assignee: Symantec Corporation
- Current Assignee: Symantec Corporation
- Current Assignee Address: US CA Mountain View
- Agency: ALG Intellectual Property, LLC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F11/00 ; G06F21/50

Abstract:
A computer-implemented method for detecting malicious documents based on component-object reuse may include (1) identifying a plurality of malicious documents, (2) identifying a plurality of component objects that are contained within at least one malicious document from the plurality of malicious documents, (3) receiving an unknown document, (4) determining that at least one component object from the plurality of component objects was used to create the unknown document, and (5) performing a security action on the unknown document in response to determining that the component object was used to create the unknown document. Various other methods, systems, and computer-readable media are also disclosed.
Information query