Invention Grant
- Patent Title: Method and system for discrete stateful behavioral analysis
-
Application No.: US14943203Application Date: 2015-11-17
-
Publication No.: US09679136B2Publication Date: 2017-06-13
- Inventor: Ahmed Said Sallam
- Applicant: McAfee, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: McAfee, Inc.
- Current Assignee: McAfee, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Baker Botts L.L.P.
- Main IPC: G06F11/00
- IPC: G06F11/00 ; G06F21/56 ; G06F21/55

Abstract:
A method for analyzing a computing system includes the steps of at a first moment in time, scanning the resources of the computing system for indications of malware, at a second moment in time scanning the resources of the computing system for indications of malware and determining the system executable objects loaded on the computing system, determining malware system changes, identifying a relationship between the malware system changes and the system executable objects loaded on the computing system, and identifying as suspected malware the system executable objects loaded on the computing system which have a relationship with the malware system changes. The malware system changes include differences between the results of scanning the resources of the computing system for indications of malware at the second and first moment of time.
Public/Granted literature
- US20160147995A1 Method and System for Discrete Stateful Behavioral Analysis Public/Granted day:2016-05-26
Information query