NETWORK SERVICE FOR THE DETECTION, ANALYSIS AND QUARANTINE OF MALICIOUS AND UNWANTED FILES
摘要
<p>A system is provided for detecting, analyzing and quarantining unwanted files in a network environment. A host agent residing on a computing device in the network environment detects a new file introduced to the computing device and sends the new file to a network service for analysis. The network service is accessible to computing devices in the network environment. An architecture for the network service may include: a request dispatcher configured to receive a candidate file for inspection from a given computing device in the network environment and distribute the candidate file to one or more of a plurality of detection engines, where the detection engines operate in parallel to analyze the candidate file and output a report regarding the candidate file; and a result aggregator configured to receive reports from each of the detection engines regarding the candidate file and aggregates the reports in accordance with an aggregation algorithm.</p>
申请公布号
WO2009020611(A2)
申请公布日期
2009.02.12
申请号
WO2008US09430
申请日期
2008.08.06
申请人
THE REGENTS OF THE UNIVERSITY OF MICHIGAN;OBERHEIDE, JON;JAHANIAN, FARNAM;COOKE, EVAN