The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 13, 2015

Filed:

Oct. 15, 2008
Applicants:

Lili Diao, Nanjing, CN;

Vincent Chan, Nanjing, CN;

Patrick MG LU, Nanjing, CN;

Inventors:

Lili Diao, Nanjing, CN;

Vincent Chan, Nanjing, CN;

Patrick Mg Lu, Nanjing, CN;

Assignee:

Trend Micro Inc., Tokyo, JP;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 11/30 (2006.01); G06F 21/56 (2013.01);
U.S. Cl.
CPC ...
G06F 21/564 (2013.01); G06F 21/561 (2013.01);
Abstract

A two stage virus detection system detects viruses in target files. In the first stage, a training application receives a master virus pattern file recording all known virus patterns and generates a features list containing fundamental virus signatures from the virus patterns, a novelty detection model, a classification model, and a set of segmented virus pattern files. In the second stage, a detection application scans a target file for viruses using the generated outputs from the first stage rather than using the master virus pattern file directly to do traditional pattern matching. The results of the scan can vary in detail depending on a fuzzy scan level. For fuzzy scan level '1,' the existence of a virus is returned. For fuzzy scan level '2,' the grant virus type found is returned. For fuzzy scan level “3,” the exact virus name is returned. This invention provides a solution for the problems caused by traditional virus detection solution: slow scanning speed, big pattern file, big burden on computation resource (CPU, RAM etc.), as well as heavy pattern updating traffic via networks.


Find Patent Forward Citations

Loading…