Invention Grant
- Patent Title: Byte-distribution analysis of file security
- Patent Title (中): 文件安全性的字节分布分析
-
Application No.: US11797539Application Date: 2007-05-04
-
Publication No.: US08087079B2Publication Date: 2011-12-27
- Inventor: Yuval Ben-Itzhak
- Applicant: Yuval Ben-Itzhak
- Applicant Address: US CA San Jose
- Assignee: Finjan, Inc.
- Current Assignee: Finjan, Inc.
- Current Assignee Address: US CA San Jose
- Agency: King & Spalding LLP
- Agent Dawn-Marie Bey
- Main IPC: G06F11/00
- IPC: G06F11/00

Abstract:
A method for scanning files for security, including receiving an unfamiliar file for scanning, if the determining indicates that the mime type is suitable for analysis, then processing a buffer of file data from the unfamiliar file, including generating a histogram of frequencies of occurrence of bytes within a buffer of file data from the unfamiliar file, excluding a designated set of bytes, and if the generated histogram of frequencies of occurrence of the non-excluded bytes deviates substantially from a reference distribution, then signaling that the unfamiliar file is potentially malicious. A system and a computer-readable storage medium are also described and claimed.
Public/Granted literature
- US20080276320A1 Byte-distribution analysis of file security Public/Granted day:2008-11-06
Information query