发明名称 Systems and Methods for Scheduling Analysis of Network Content for Malware
摘要 A method for detecting malicious network content comprises inspecting one or more packets of network content, identifying a suspicious characteristic of the network content, determining a score related to a probability that the network content includes malicious network content based on at least the suspicious characteristic, identifying the network content as suspicious if the score satisfies a threshold value, executing a virtual machine to process the suspicious network content, and analyzing a response of the virtual machine to detect malicious network content.
申请公布号 US2015180886(A1) 申请公布日期 2015.06.25
申请号 US201514620101 申请日期 2015.02.11
申请人 FireEye, Inc. 发明人 Staniford Stuart Gresley;Aziz Ashar
分类号 H04L29/06;G06F9/455 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method for detecting malicious network content, comprising: inspecting one or more packets of network content; identifying a suspicious characteristic of the network content; determining a score related to a probability that the network content includes malicious network content based on at least the suspicious characteristic; identifying the network content as suspicious if the score satisfies a threshold value; executing a virtual machine to process the suspicious network content; and analyzing a response of the virtual machine to detect malicious network content.
地址 Milpitas CA US