The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 21, 2019

Filed:

Mar. 03, 2015
Applicant:

Conew Network Technology (Beijing) Co., Ltd., Beijing, CN;

Inventors:

Guoqing Yuan, Beijing, CN;

Haifeng Su, Beijing, CN;

Xin Shu, Beijing, CN;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/00 (2006.01); G06F 21/56 (2013.01);
U.S. Cl.
CPC ...
G06F 21/564 (2013.01); G06F 2221/033 (2013.01);
Abstract

A method and device for constructing an apk virus signature database and an apk virus detection system. The method comprises: obtaining a given sample set, the sample set being composed of N normal apk file samples and N virus-infected apk file samples; for any sample in the given sample set, separately obtaining M signature values of the sample according to M preset signatures; for any sample in the given sample set, separately obtaining M signature values of the sample according to M preset signatures; for any sample subset i (i=1, . . . , 2M), determining whether the sample subset satisfies the following conditions: the ratio of the total number Ciof samples in the subset to the total number of samples in the given sample set is greater than a preset first threshold and the ratio of the total number Ciof virus-infected samples to Ciis greater than a preset second threshold, and if yes, determining a combination of signature values of M signatures corresponding to the sample subset i as a virus signature; and generating an apk virus signature database comprising a plurality of virus signatures, the apk virus signature database being used for detecting an apk file.


Find Patent Forward Citations

Loading…