发明名称 CENTRALIZED SCANNER DATABASE WITH OPTIMAL DEFINITION DISTRIBUTION USING NETWORK QUERIES
摘要 <p>A system and method detects malware on client devices based on partially distributed malware definitions from a central server. A server stores malware definitions for known malware. The server generates one or more filters based on the malware definitions and distributes the filter(s) to client devices. The server also distributes full definitions to the clients for a subset of the most commonly detected malware. The client device scans files for malware by first applying the filter to a file. If the filter outputs a positive detection, the client scans the file using the full definition to determine if the file comprises malware. If the full definition is not stored locally by the client, the client queries the server for the definition and then continues the scanning process.</p>
申请公布号 WO2009143272(A1) 申请公布日期 2009.11.26
申请号 WO2009US44713 申请日期 2009.05.20
申请人 SYMANTEC CORPORATION;SZOR, PETER 发明人 SZOR, PETER
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址