Processing

Please wait...

Settings

Settings

Goto Application

1. WO2014012441 - METHOD AND APPARATUS FOR DETERMINING MALICIOUS PROGRAM

Publication Number WO/2014/012441
Publication Date 23.01.2014
International Application No. PCT/CN2013/078894
International Filing Date 05.07.2013
IPC
G06F 21/56 2013.1
GPHYSICS
06COMPUTING; CALCULATING OR COUNTING
FELECTRIC DIGITAL DATA PROCESSING
21Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
55Detecting local intrusion or implementing counter-measures
56Computer malware detection or handling, e.g. anti-virus arrangements
CPC
G06F 21/56
GPHYSICS
06COMPUTING; CALCULATING; COUNTING
FELECTRIC DIGITAL DATA PROCESSING
21Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
55Detecting local intrusion or implementing counter-measures
56Computer malware detection or handling, e.g. anti-virus arrangements
G06F 21/562
GPHYSICS
06COMPUTING; CALCULATING; COUNTING
FELECTRIC DIGITAL DATA PROCESSING
21Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
55Detecting local intrusion or implementing counter-measures
56Computer malware detection or handling, e.g. anti-virus arrangements
562Static detection
Applicants
  • TENCENT TECHNOLOGY (SHENZHEN) COMPANY LIMITED [CN]/[CN]
Inventors
  • LI, Wei
  • TONG, Yongliang
Agents
  • BEIJING SAN GAO YONG XIN INTELLECTUAL PROPERTY AGENCY CO., LTD.
Priority Data
201210245337.X16.07.2012CN
Publication Language English (en)
Filing Language English (EN)
Designated States
Title
(EN) METHOD AND APPARATUS FOR DETERMINING MALICIOUS PROGRAM
(FR) PROCÉDÉ ET APPAREIL DE DÉTERMINATION DE PROGRAMME MALVEILLANT
Abstract
(EN) Various embodiments provide methods, apparatus, and computer readable medium for determining a malicious program. In an exemplary method, a specific application programming interface (API) within an application program can be obtained (101). Call logic for calling the specific API can be determined (102). The call logic can include a triggering event to trigger the specific API to be called, a feedback path provided after the specific API is called, or a combination thereof. Whether the application program is a malicious program can be determined (103) according to the call logic.
(FR) Divers modes de réalisation concernent des procédés, un appareil et un support lisible par ordinateur pour déterminer un programme malveillant. Un procédé donné à titre d'exemple consiste à : obtenir une interface de programmation d'application (API) spécifique dans un programme d'application (101) ; déterminer une logique d'appel servant à appeler l'API spécifique (102), la logique d'appel pouvant contenir un événement de déclenchement afin de déclencher l'API spécifique à appeler, un chemin de retour d'informations fourni après que l'API spécifique a été appelée, ou une combinaison de ces deux éléments ; et déterminer, selon la logique d'appel, si le programme d'application est un programme malveillant (103).
Related patent documents
Latest bibliographic data on file with the International Bureau