Invention Grant
- Patent Title: Backwards researching activity indicative of pestware
- Patent Title (中): 反向研究活动,指示有害生物
-
Application No.: US13490294Application Date: 2012-06-06
-
Publication No.: US08719932B2Publication Date: 2014-05-06
- Inventor: Matthew L. Boney
- Applicant: Matthew L. Boney
- Applicant Address: US CO Broomfield
- Assignee: Webroot Inc.
- Current Assignee: Webroot Inc.
- Current Assignee Address: US CO Broomfield
- Agency: Sheridan Ross P.C.
- Main IPC: G06F21/56
- IPC: G06F21/56

Abstract:
A system and method for researching an identity of a source of activity that is indicative of pestware is described. In one embodiment the method comprises monitoring, using a kernel-mode driver, API call activity on the computer; storing information related to the API call activity in a log; analyzing, heuristically, the API call activity to determine whether one or more weighted factors associated with the API call activity exceeds a threshold; identifying, based upon the API call activity, a suspected pestware object on the computer; identifying, in response to the identifying the suspected pestware object, a reference to an identity of an externally networked source of the suspected pestware object; and reporting the identity of the externally networked source to an externally networked pestware research entity.
Public/Granted literature
- US20120246722A1 BACKWARDS RESEARCHING ACTIVITY INDICATIVE OF PESTWARE Public/Granted day:2012-09-27
Information query