BR112017003782A2 - avaliação de reputação de arquivo - Google Patents

avaliação de reputação de arquivo

Info

Publication number
BR112017003782A2
BR112017003782A2 BR112017003782A BR112017003782A BR112017003782A2 BR 112017003782 A2 BR112017003782 A2 BR 112017003782A2 BR 112017003782 A BR112017003782 A BR 112017003782A BR 112017003782 A BR112017003782 A BR 112017003782A BR 112017003782 A2 BR112017003782 A2 BR 112017003782A2
Authority
BR
Brazil
Prior art keywords
file
reputation
parts
reputation service
service
Prior art date
Application number
BR112017003782A
Other languages
English (en)
Inventor
Penta Anthony
seifert Christian
Jeb Haber Elliott
Alexander Sim Robert
Kasperkiewicz Tomasz
Original Assignee
Microsoft Technology Licensing Llc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Microsoft Technology Licensing Llc filed Critical Microsoft Technology Licensing Llc
Publication of BR112017003782A2 publication Critical patent/BR112017003782A2/pt

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • H04L63/1416Event detection, e.g. attack signature detection
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/10File systems; File servers
    • G06F16/18File system types
    • G06F16/182Distributed file systems
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/51Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems at application loading time, e.g. accepting, rejecting, starting or inhibiting executable software based on integrity or source reliability
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/55Detecting local intrusion or implementing counter-measures
    • G06F21/56Computer malware detection or handling, e.g. anti-virus arrangements
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/104Peer-to-peer [P2P] networks

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • Computer Hardware Design (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • General Health & Medical Sciences (AREA)
  • Health & Medical Sciences (AREA)
  • Virology (AREA)
  • Computing Systems (AREA)
  • Data Mining & Analysis (AREA)
  • Databases & Information Systems (AREA)
  • Information Transfer Between Computers (AREA)
  • Storage Device Security (AREA)
  • Debugging And Monitoring (AREA)

Abstract

uma ou mais técnicas e/ou sistemas são fornecidos para aquisição de arquivo para avaliação de reputação. um serviço de reputação pode ser configurado para avaliar os arquivos e fornecer reputações de tais arquivos para clientes (por exemplo, uma indicação de se um arquivo é seguro ou malicioso). se o serviço de reputação receber uma solicitação de reputação para um arquivo que é desconhecido do serviço de reputação (por exemplo, um arquivo ainda não totalmente adquirido pelo serviço de reputação), então o serviço de reputação pode identificar um conjunto de partes nas quais o arquivo pode ser dividido. o serviço de reputação pode obter as partes dos vários clientes, tal como uma primeira parte de um primeiro cliente e uma segunda parte de um segundo cliente. tais partes podem ser avaliadas para designar uma reputação para o arquivo. dessa forma, o serviço de reputação pode recuperar as partes de um arquivo de uma forma distribuída para a avaliação de reputação.
BR112017003782A 2014-09-17 2015-09-16 avaliação de reputação de arquivo BR112017003782A2 (pt)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US14/488,719 US9398036B2 (en) 2014-09-17 2014-09-17 Chunk-based file acquisition and file reputation evaluation
PCT/US2015/050307 WO2016044354A1 (en) 2014-09-17 2015-09-16 File reputation evaluation

Publications (1)

Publication Number Publication Date
BR112017003782A2 true BR112017003782A2 (pt) 2017-12-12

Family

ID=54251733

Family Applications (1)

Application Number Title Priority Date Filing Date
BR112017003782A BR112017003782A2 (pt) 2014-09-17 2015-09-16 avaliação de reputação de arquivo

Country Status (11)

Country Link
US (1) US9398036B2 (pt)
EP (1) EP3195573B1 (pt)
JP (1) JP6633059B2 (pt)
KR (1) KR102351948B1 (pt)
CN (1) CN107079041B (pt)
AU (1) AU2015317916B2 (pt)
BR (1) BR112017003782A2 (pt)
CA (1) CA2959754C (pt)
MX (1) MX370212B (pt)
RU (1) RU2690759C2 (pt)
WO (1) WO2016044354A1 (pt)

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10169584B1 (en) * 2015-06-25 2019-01-01 Symantec Corporation Systems and methods for identifying non-malicious files on computing devices within organizations
US10055586B1 (en) 2015-06-29 2018-08-21 Symantec Corporation Systems and methods for determining the trustworthiness of files within organizations
US9838405B1 (en) 2015-11-20 2017-12-05 Symantec Corporation Systems and methods for determining types of malware infections on computing devices
US10003606B2 (en) 2016-03-30 2018-06-19 Symantec Corporation Systems and methods for detecting security threats
US10178122B1 (en) * 2016-08-12 2019-01-08 Symantec Corporation Systems and methods for disseminating location-based reputations for link-layer wireless attacks
US11086822B1 (en) * 2016-09-13 2021-08-10 Amazon Technologies, Inc. Application-based compression
US10091231B1 (en) 2016-09-15 2018-10-02 Symantec Corporation Systems and methods for detecting security blind spots
US10542017B1 (en) 2016-10-13 2020-01-21 Symantec Corporation Systems and methods for personalizing security incident reports
US11711380B2 (en) * 2019-10-21 2023-07-25 Acronis International Gmbh Systems and methods for parallel virus and malware scan between agents in a cloud environment
US20220129417A1 (en) * 2020-10-22 2022-04-28 Google Llc Code Similarity Search
CN113282922A (zh) * 2021-06-29 2021-08-20 北京安天网络安全技术有限公司 对移动存储设备进行防护控制的方法、装置、设备及介质

Family Cites Families (40)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020046041A1 (en) 2000-06-23 2002-04-18 Ken Lang Automated reputation/trust service
AU2001276885A1 (en) * 2000-07-12 2002-01-21 Cachestream Corporation Credit system
US8635690B2 (en) 2004-11-05 2014-01-21 Mcafee, Inc. Reputation based message processing
US7991902B2 (en) * 2006-12-08 2011-08-02 Microsoft Corporation Reputation-based authorization decisions
US8312536B2 (en) * 2006-12-29 2012-11-13 Symantec Corporation Hygiene-based computer security
US8250657B1 (en) * 2006-12-29 2012-08-21 Symantec Corporation Web site hygiene-based computer security
US8214497B2 (en) 2007-01-24 2012-07-03 Mcafee, Inc. Multi-dimensional reputation scoring
US8769702B2 (en) 2008-04-16 2014-07-01 Micosoft Corporation Application reputation service
US8595282B2 (en) * 2008-06-30 2013-11-26 Symantec Corporation Simplified communication of a reputation score for an entity
EP2988189B1 (en) * 2008-07-11 2020-09-02 eldoLAB Holding B.V. Power converter for an led assembly and lighting application
US9135433B2 (en) 2008-08-29 2015-09-15 Adobe Systems Incorporated Identifying reputation and trust information for software
US20100169972A1 (en) * 2008-12-31 2010-07-01 Microsoft Corporation Shared repository of malware data
US8281403B1 (en) * 2009-06-02 2012-10-02 Symantec Corporation Methods and systems for evaluating the health of computing systems based on when operating-system changes occur
CN101576947B (zh) * 2009-06-05 2012-08-08 成都市华为赛门铁克科技有限公司 文件防护处理方法、装置及系统
US20100318759A1 (en) * 2009-06-15 2010-12-16 Microsoft Corporation Distributed rdc chunk store
US8719939B2 (en) 2009-12-31 2014-05-06 Mcafee, Inc. Malware detection via reputation system
JP2012008847A (ja) * 2010-06-25 2012-01-12 Brother Ind Ltd 配信システム、ノード装置、ノード処理プログラム、及びコンテンツ取得方法
JP5135389B2 (ja) * 2010-06-30 2013-02-06 株式会社日立情報システムズ 情報漏えいファイル検知装置、及びその方法とプログラム
JP6019484B2 (ja) * 2010-08-25 2016-11-02 ルックアウト、アイエヌシー. サーバで結合されたマルウェア防止のためのシステムと方法
US8413235B1 (en) * 2010-09-10 2013-04-02 Symantec Corporation Malware detection using file heritage data
US9235586B2 (en) * 2010-09-13 2016-01-12 Microsoft Technology Licensing, Llc Reputation checking obtained files
US8572007B1 (en) 2010-10-29 2013-10-29 Symantec Corporation Systems and methods for classifying unknown files/spam based on a user actions, a file's prevalence within a user community, and a predetermined prevalence threshold
US8671449B1 (en) 2010-11-10 2014-03-11 Symantec Corporation Systems and methods for identifying potential malware
US8863291B2 (en) * 2011-01-20 2014-10-14 Microsoft Corporation Reputation checking of executable programs
US8769691B1 (en) * 2011-02-14 2014-07-01 Trend Micro, Inc. Network traffic reduction
US8732587B2 (en) 2011-03-21 2014-05-20 Symantec Corporation Systems and methods for displaying trustworthiness classifications for files as visually overlaid icons
JP6082387B2 (ja) * 2011-05-14 2017-02-15 ビットカーサ インコーポレイテッド ユーザ不可知暗号化ファイルのサーバ側非複製化を有するクラウドファイルシステム
US8516592B1 (en) * 2011-06-13 2013-08-20 Trend Micro Incorporated Wireless hotspot with lightweight anti-malware
US8799190B2 (en) * 2011-06-17 2014-08-05 Microsoft Corporation Graph-based malware classification based on file relationships
US9065826B2 (en) 2011-08-08 2015-06-23 Microsoft Technology Licensing, Llc Identifying application reputation based on resource accesses
US8650638B2 (en) * 2011-10-18 2014-02-11 Mcafee, Inc. System and method for detecting a file embedded in an arbitrary location and determining the reputation of the file
US8635700B2 (en) * 2011-12-06 2014-01-21 Raytheon Company Detecting malware using stored patterns
US8627469B1 (en) * 2012-03-14 2014-01-07 Symantec Corporation Systems and methods for using acquisitional contexts to prevent false-positive malware classifications
US20130254880A1 (en) 2012-03-21 2013-09-26 Mcafee, Inc. System and method for crowdsourcing of mobile application reputations
CN102752290B (zh) * 2012-06-13 2016-06-01 深圳市腾讯计算机系统有限公司 一种云安全系统中的未知文件安全信息确定方法和装置
CN103685150B (zh) * 2012-09-03 2015-08-12 腾讯科技(深圳)有限公司 上传文件的方法和装置
US9660745B2 (en) * 2012-12-12 2017-05-23 At&T Intellectual Property I, L.P. Geocast-based file transfer
US9311480B2 (en) * 2013-03-15 2016-04-12 Mcafee, Inc. Server-assisted anti-malware client
WO2014143012A1 (en) * 2013-03-15 2014-09-18 Mcafee, Inc. Remote malware remediation
CN103220367A (zh) * 2013-05-13 2013-07-24 深圳市中博科创信息技术有限公司 数据复制方法及数据存储系统

Also Published As

Publication number Publication date
JP2017538181A (ja) 2017-12-21
EP3195573A1 (en) 2017-07-26
CA2959754C (en) 2022-05-03
US20160080400A1 (en) 2016-03-17
MX2017003416A (es) 2017-06-19
JP6633059B2 (ja) 2020-01-22
KR20170056556A (ko) 2017-05-23
CA2959754A1 (en) 2016-03-24
WO2016044354A1 (en) 2016-03-24
CN107079041A (zh) 2017-08-18
AU2015317916B2 (en) 2019-01-24
EP3195573B1 (en) 2018-06-27
KR102351948B1 (ko) 2022-01-14
RU2690759C2 (ru) 2019-06-05
RU2017108769A3 (pt) 2019-04-01
CN107079041B (zh) 2020-10-20
RU2017108769A (ru) 2018-09-17
US9398036B2 (en) 2016-07-19
AU2015317916A1 (en) 2017-03-09
MX370212B (es) 2019-12-05

Similar Documents

Publication Publication Date Title
BR112017003782A2 (pt) avaliação de reputação de arquivo
BR112017003848A2 (pt) sistema de arquivos com somas de verificação associadas com extensões
BR112015029306A2 (pt) fragmentação de banco de dados com camada de atualização
BR112018004181A2 (pt) anticorpos anti-lag-3
BR112017015480A2 (pt) método e aparelho para gerenciamento e orquestração de nfv
BR112017017086A2 (pt) monitoramento de produtos de escavação para equipamento de terraplenagem
BR112016017361A2 (pt) Técnicas para descoberta e gerenciamento de recurso de computação
BR112017005646A2 (pt) funções de partição composta
BR112016002642A2 (pt) material de empacotamento como um item coletado
MX2016011921A (es) Configuracion de modo arquitectonico en un sistema de computo.
BR112016024779A2 (pt) sistema e método para gestão de fornecimento de serviço
BR112017000062A2 (pt) tratamento de erro para arquivos trocados através de rede
BR112015020526A2 (pt) métodos de descoberta, configuração e alavancagem de relações nas redes de internet de coisas (iot)
MX364468B (es) Termopar con conexión a tierra activo y método de operación.
BR112017000698A2 (pt) métodos e sistemas para disparar uma sincronização eficiente de aplicativo
BR112017004100A2 (pt) apresentação de ambiente de computação em múltiplos dispositivos
BR112017008453A2 (pt) detecção automática de incompatibilidade de esquema
BR112017003426A2 (pt) fluxo de dados construído para processamento de evento intensificado
BR112017000970A2 (pt) ferramentas visuais para a análise de falhas em sistemas distribuídos
BR112016007119A2 (pt) domínios de falha em hardware moderno
BR112017003103A8 (pt) Método de estabelecer uma assinatura para uma entidade e sistema de provedor em nuvem
BR112019000188A2 (pt) método implementado por computador, meio não transitório, legível por computador e sistema implementado por computador
CO2017009120A2 (es) Dispositivo y método para un estilo controlado por condiciones
BR112018073936A2 (pt) entradas de amostra e acesso aleatório
BR112015025905A2 (pt) sistema e método de gerenciamento de espectro, e, mídia legível por computador não transitória

Legal Events

Date Code Title Description
B06U Preliminary requirement: requests with searches performed by other patent offices: procedure suspended [chapter 6.21 patent gazette]
B350 Update of information on the portal [chapter 15.35 patent gazette]
B350 Update of information on the portal [chapter 15.35 patent gazette]
B07A Application suspended after technical examination (opinion) [chapter 7.1 patent gazette]
B09A Decision: intention to grant [chapter 9.1 patent gazette]