Invention Grant
- Patent Title: Method and apparatus for detecting malware infection
-
Application No.: US14601969Application Date: 2015-01-21
-
Publication No.: US10270803B2Publication Date: 2019-04-23
- Inventor: Guofei Gu , Phillip A. Porras , Martin W. Fong
- Applicant: SRI International
- Applicant Address: US CA Menlo Park
- Assignee: SRI International
- Current Assignee: SRI International
- Current Assignee Address: US CA Menlo Park
- Agency: Hickman Palermo Becker Bingham LLP
- Agent Christine E. Orich
- Main IPC: H04L29/00
- IPC: H04L29/00 ; H04L29/06 ; G06F21/55 ; G06F21/56 ; G06F11/34 ; G06F21/57

Abstract:
In one embodiment, the present invention is a method and apparatus for detecting malware infection. One embodiment of a method for detecting a malware infection at a local host in a network, includes monitoring communications between the local host and one or more entities external to the network, generating a dialog warning if the communications include a transaction indicative of a malware infection, declaring a malware infection if, within a predefined period of time, the dialog warnings includes at least one dialog warning indicating a transaction initiated at the local host and at least one dialog warning indicating an additional transaction indicative of a malware infection, and outputting an infection profile for the local host.
Public/Granted literature
- US20160359870A1 METHOD AND APPARATUS FOR DETECTING MALWARE INFECTION Public/Granted day:2016-12-08
Information query