发明名称 METHODS AND APPARATUS FOR MALWARE THREAT RESEARCH
摘要 Methods for classifying computer objects as malware and the associated apparatus are disclosed. An exemplary method includes, at a base computer, receiving data about a computer object from each of plural remote computers on which the object or similar objects are stored and or processed and counting the number of times in a given time period objects having one or more common attributes or behaviors that have been seen by the remote computers. The counted number is then compared with the expected number based on past observations, and if the comparison exceeds a predetermined threshold, the objects are flagged as unsafe or as suspicious.
申请公布号 US2012266208(A1) 申请公布日期 2012.10.18
申请号 US201213372433 申请日期 2012.02.13
申请人 MORRIS MELVYN;JAROCH JOSEPH;WEBROOT INC. 发明人 MORRIS MELVYN;JAROCH JOSEPH
分类号 G06F21/56 主分类号 G06F21/56
代理机构 代理人
主权项
地址