发明名称 |
Method and system for detecting and countering malware in a computer |
摘要 |
An arrangement analyzes a data stream to identify particular token sequences known to be of interest or malware. A preprocessing step organizes the malware tokens into a“graph”in which overlapping token sequences are interconnected with logic splices. The preprocessing is performed only once for a given set of malware targets. The resulting graph can be traversed quickly in runtime operation to identify malware token strings in the data stream. |
申请公布号 |
US8701162(B1) |
申请公布日期 |
2014.04.15 |
申请号 |
US20100917550 |
申请日期 |
2010.11.02 |
申请人 |
PEDERSEN RICHARD N.;LOCKHEED MARTIN CORPORATION |
发明人 |
PEDERSEN RICHARD N. |
分类号 |
G06F17/00 |
主分类号 |
G06F17/00 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|