摘要 |
According to one embodiment, a computer-implemented method for execution on one or more processors includes receiving a first file and determining a file type of the first file. The method also includes determining, according to a first policy, a plurality of malware detection schemes to apply to the first file based on the determined file type of the first file. In addition, the method includes scheduling the application of the determined plurality of malware detection schemes to the first file amongst a plurality of detection nodes according to a second policy. Further, the method includes determining, in response to determining the results of applying the plurality of malware detection schemes, that the first file is malware or determining that the first file is suspected malware according to a third policy. |
申请人 |
RAYTHEON COMPANY;MC DOUGAL, MONTY, D.;JENNINGS, RANDY, S.;BROWN, JEFFREY, C.;LEE, JESSE, J.;SMITH, BRIAN, N.;DE RITA, DARIN, J.;CARIKER, KEVIN, L.;STERNS, WILLIAM E.;DALY, MICHAEL, K. |
发明人 |
MC DOUGAL, MONTY, D.;JENNINGS, RANDY, S.;BROWN, JEFFREY, C.;LEE, JESSE, J.;SMITH, BRIAN, N.;DE RITA, DARIN, J.;CARIKER, KEVIN, L.;STERNS, WILLIAM E.;DALY, MICHAEL, K. |