发明名称 METHODS AND SYSTEMS FOR IDENTIFYING MALWARE THROUGH DIFFERENCES IN CLOUD VS. CLIENT BEHAVIOR
摘要 A computing device may be configured to work in conjunction with another component (e.g., a server) to better determine whether a software application is benign or non-benign. This may be accomplished via the server performing static and/or dynamic analysis operations, generating a behavior information structure that describes or characterizes the range of correct or expected behaviors of the software application, and sending the behavior information structure to a computing device. The computing device may compare the received behavior information structure to a locally generated behavior information structure to determining whether the observed behavior of the software application differs or deviates from the expected behavior of the software application or whether the observed behavior is within the range of expected behaviors. The computing device may increase its level of security/scrutiny when the behavior information structure does not match the local behavior information structure.
申请公布号 WO2016153740(A1) 申请公布日期 2016.09.29
申请号 WO2016US20193 申请日期 2016.03.01
申请人 QUALCOMM INCORPORATED 发明人 GANTMAN, Alexander;GUPTA, Rajarshi;SRIDHARA, Vinay
分类号 G06F21/55;G06F21/56 主分类号 G06F21/55
代理机构 代理人
主权项
地址