×

Dynamically remote tuning of a malware content detection system

  • US 10,341,363 B1
  • Filed: 12/28/2015
  • Issued: 07/02/2019
  • Est. Priority Date: 03/31/2014
  • Status: Active Grant
First Claim
Patent Images

1. An apparatus comprising:

  • a processor; and

    a memory communicatively coupled to the processor, the memory has stored thereon a first detection logic including software that is configurable to enable, disable or modify analysis capabilities of the first detection logic, wherein the first detection logic, when executed by the processor, conducts a first analysis of a received object to determine if the received object is associated with a malicious attack,wherein the first detection logic receives a configuration file, the configuration file being automatically generated by a parameter generation logic including second software to automatically generate the configuration file based on a result of the first analysis,wherein the capabilities of the first detection logic are altered based on the configuration file, the first detection logic, after alteration of the capabilities, performs a second analysis on the received object or a second received object, the second analysis being different than the first analysis and configured to detect characteristics or behaviors associated with the malicious attack that are used to classify the received object or the second received object as malware, wherein the configuration file modifies a weighting of at least one of a first analysis score being at least part as the result of the first analysis or a second analysis score being at least part of a result of the second analysis as used in classifying the received object or the second received object as malware.

View all claims
  • 6 Assignments
Timeline View
Assignment View
    ×
    ×