Invention Grant
- Patent Title: Structural recognition of malicious code patterns
-
Application No.: US14885765Application Date: 2015-10-16
-
Publication No.: US09680847B2Publication Date: 2017-06-13
- Inventor: Christoph Alme
- Applicant: McAfee, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: McAfee, Inc.
- Current Assignee: McAfee, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Blank Rome LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F17/30 ; G06F21/56

Abstract:
Various embodiments include an apparatus comprising a detection database including a tree structure of descriptor parts including one or more root nodes and one or more child nodes linked to from one or more parent descriptor parts chains, each of the root nodes representing a descriptor part, and each root node linked to at least one of the child nodes, each root node and each child node linked to any possible additional child nodes, wherein the possible additional child nodes include any possible successor child nodes and a descriptor comparator coupled to the detection database, the descriptor comparator operable to receive data including a plurality of logic entities, once or successively, and to continuously compare logic entities provided to the tree structure of descriptor parts stored in detection database, and to provide an output based on the comparison.
Public/Granted literature
- US20160119366A1 STRUCTURAL RECOGNITION OF MALICIOUS CODE PATTERNS Public/Granted day:2016-04-28
Information query