发明名称 STRUCTURAL RECOGNITION OF MALICIOUS CODE PATTERNS
摘要 Various embodiments include an apparatus comprising a detection database including a tree structure of descriptor parts including one or more root nodes and one or more child nodes linked to from one or more parent descriptor parts chains, each of the root nodes representing a descriptor part, and each root node linked to at least one of the child nodes, each root node and each child node linked to any possible additional child nodes, wherein the possible additional child nodes include any possible successor child nodes and a descriptor comparator coupled to the detection database, the descriptor comparator operable to receive data including a plurality of logic entities, once or successively, and to continuously compare logic entities provided to the tree structure of descriptor parts stored in detection database, and to provide an output based on the comparison.
申请公布号 US2010115620(A1) 申请公布日期 2010.05.06
申请号 US20090477619 申请日期 2009.06.03
申请人 SECURE COMPUTING CORPORATION 发明人 ALME CHRISTOPH
分类号 G06F21/00;G06F7/00;G06F12/14 主分类号 G06F21/00
代理机构 代理人
主权项
地址