- 专利标题: System and method for detecting malicious links in electronic messages
-
申请号: US15083171申请日: 2016-03-28
-
公开(公告)号: US09888019B1公开(公告)日: 2018-02-06
- 发明人: Vinay Pidathala , Henry Uyeno
- 申请人: FireEye, Inc.
- 申请人地址: US CA Milpitas
- 专利权人: FireEye, Inc.
- 当前专利权人: FireEye, Inc.
- 当前专利权人地址: US CA Milpitas
- 代理机构: Rutan & Tucker, LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
According to one embodiment, in response to receiving a plurality of uniform resource locator (URL) links for malicious determination, any known URL links are removed from the URL links based on a list of known link signatures. For each of remaining URL links that are unknown, a link analysis is performed on the URL link based on link heuristics to determine whether the URL link is suspicious. For each of the suspicious URL links, a dynamic analysis is performed on a resource of the suspicious URL link. It is classified whether the suspicious URL link is a malicious link based on a behavior of the resource during the dynamic analysis.
信息查询