Invention Grant
- Patent Title: Using telemetry to reduce malware definition package size
- Patent Title (中): 使用遥测来减少恶意软件定义包的大小
-
Application No.: US13682288Application Date: 2012-11-20
-
Publication No.: US08826431B2Publication Date: 2014-09-02
- Inventor: Shane Pereira , Carey S. Nachenberg
- Applicant: Symantec Corporation
- Applicant Address: US CA Mountain View
- Assignee: Symantec Corporation
- Current Assignee: Symantec Corporation
- Current Assignee Address: US CA Mountain View
- Agency: Fenwick & West LLP
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/56 ; H04L29/06

Abstract:
Clients send telemetry data to a cloud server, where the telemetry data includes security-related information such as file creations, timestamps and malware detected at the clients. The cloud server analyzes the telemetry data to identify malware that is currently spreading among the clients. Based on the analysis of the telemetry data, the cloud server segments malware definitions in a cloud definition database into a set of local malware definitions and a set of cloud malware definitions. The cloud server provides the set of local malware definitions to the clients as a local malware definition update, and replies to cloud definition lookup requests from clients with an indication of whether a file identified in a request contains malware. If the file is malicious, the client remediates the malware using local malware definition update.
Public/Granted literature
- US20140143869A1 USING TELEMETRY TO REDUCE MALWARE DEFINITION PACKAGE SIZE Public/Granted day:2014-05-22
Information query