-
公开(公告)号:US20120324579A1
公开(公告)日:2012-12-20
申请号:US13162211
申请日:2011-06-16
IPC分类号: G06F11/00
CPC分类号: G06F21/564 , G06F21/552
摘要: Methods, systems, and computer program products are provided for recovering from false positives of malware detection. Malware signatures that are defective may be causing false positives during software scanning for malware. Such defective malware signatures may be detected (e.g., by user feedback, etc.) and revoked. Computers that are using the malware signatures to detect malware may be notified of the revoked signatures, and may be enabled to re-scan content identified as containing malware using malware signatures that do not include the revoked malware signatures. As such, if the content is determined during the re-scan to not be infected, the content may be re-enabled for usage on the computer (e.g., may be restored from quarantine storage).
摘要翻译: 提供了方法,系统和计算机程序产品,用于从恶意软件检测的误报中恢复。 恶意软件签名在软件扫描恶意软件时可能会导致误报。 可以检测到这种有缺陷的恶意软件签名(例如,通过用户反馈等)并被撤销。 正在使用恶意软件签名来检测恶意软件的计算机可能被通知撤销的签名,并且可以使用不包括被撤销的恶意软件签名的恶意软件签名来重新扫描被识别为包含恶意软件的内容。 因此,如果内容在重新扫描期间确定为不被感染,则可以重新启用内容以在计算机上使用(例如,可以从隔离存储器恢复)。
-
公开(公告)号:US09858415B2
公开(公告)日:2018-01-02
申请号:US13162211
申请日:2011-06-16
CPC分类号: G06F21/564 , G06F21/552
摘要: Methods, systems, and computer program products are provided for recovering from false positives of malware detection. Malware signatures that are defective may be causing false positives during software scanning for malware. Such defective malware signatures may be detected (e.g., by user feedback, etc.) and revoked. Computers that are using the malware signatures to detect malware may be notified of the revoked signatures, and may be enabled to re-scan content identified as containing malware using malware signatures that do not include the revoked malware signatures. As such, if the content is determined during the re-scan to not be infected, the content may be re-enabled for usage on the computer (e.g., may be restored from quarantine storage).
-
公开(公告)号:US20130160126A1
公开(公告)日:2013-06-20
申请号:US13327223
申请日:2011-12-15
申请人: Vishal Kapoor , Jason J. Joyce , Gregory W. Nichols , Joshua W. Dunn , Michael S. Jarrett , Adrian M. Marinescu , Marc E. Seinfeld , Axel Andrejs , Jayaraman Kalyana Sundaram
发明人: Vishal Kapoor , Jason J. Joyce , Gregory W. Nichols , Joshua W. Dunn , Michael S. Jarrett , Adrian M. Marinescu , Marc E. Seinfeld , Axel Andrejs , Jayaraman Kalyana Sundaram
CPC分类号: G06F21/568 , G06F2221/2115
摘要: A system is described for remediating a malicious modern application installed on an end user device. In an embodiment, the system includes an antimalware program executing on the end user device that can detect and attempt to remediate the malicious modern application, an operating system executing on the end user device that is configured to interact with the antimalware program for the purpose of facilitating the establishment of a connection between the end user device and an application support system in response to determining that the antimalware program has detected and attempted to remediate the malicious modern application, and the application support system that can perform remediation operations beyond those that can be performed by the antimalware program.
摘要翻译: 描述了一种用于修复安装在最终用户设备上的恶意现代应用程序的系统。 在一个实施例中,系统包括在最终用户设备上执行的可以检测并尝试修复恶意现代应用的反恶意软件程序,该终端用户设备上执行的被配置为与反恶意软件程序交互的操作系统, 响应于确定反恶意软件程序已经检测并尝试修复恶意现代应用程序,以及能够执行补救操作的应用程序支持系统,超出可以执行的修复操作,便于建立最终用户设备和应用程序支持系统之间的连接 由反恶意程序执行。
-
-