发明名称 |
Selecting malware signatures to reduce false-positive detections |
摘要 |
A set of candidate signatures for a malicious software (malware) is generated. The candidate signatures in the set are scored based on features that indicate the signatures are more unique and thus less likely to generically occur non-malicious programs. A malware signature for the malware entity is selected from among the candidate malware signatures based on the scores. The selected malware signature is stored.
|
申请公布号 |
US8239948(B1) |
申请公布日期 |
2012.08.07 |
申请号 |
US20080340420 |
申请日期 |
2008.12.19 |
申请人 |
GRIFFIN KENT E.;CHIUEH TZI-CKER;SCHNEIDER SCOTT;HU XIN;SYMANTEC CORPORATION |
发明人 |
GRIFFIN KENT E.;CHIUEH TZI-CKER;SCHNEIDER SCOTT;HU XIN |
分类号 |
G06F11/00 |
主分类号 |
G06F11/00 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|